Ecosystem metrics
- New Repos
- 7
- New
- Commits
- 747
- up 10.7%
- Releases
- 3
- down 25.0%
- Contributors
- 49
- up 14.0%
- Merges
- 22
- down 8.3%
Activity Overview
Commits and releases over time
- Commits
- Releases
- Authors
Repository Explorer
No repositories match that filter.
8106 commits in all time
Jul 08, 2026 15:19 – Oct 06, 2026 15:19 UTC
add Go Benchmark (go) benchmark result for a57ad64788568d1f76f63f52af499e3e30fa9149
b3618d86
gh-pages
1/445 ++ 1 --
Merge b141c6941c10c6ba7afe41d9106d3fa83db0883f into a57ad64788568d1f76f63f52af499e3e30fa9149
009ae8ca
pull/6718/merge
3/256 ++ 16 --
Merge d462a4a964685bc0a0428965bc658b656581c11b into a57ad64788568d1f76f63f52af499e3e30fa9149
1eb6cbf1
pull/6757/merge
1/6 ++ 4 --
Merge 7d79340998b68fe8400b44600d0c83c7b0fd6ffa into a57ad64788568d1f76f63f52af499e3e30fa9149
a7066131
pull/6754/merge
4/411 ++ 14 --
Merge b707c1099c9c5dd53d574eb2fb4af290004ed18f into a57ad64788568d1f76f63f52af499e3e30fa9149
f14896d8
pull/6753/merge
3/19 ++ 11 --
Merge bee106b32800221aa7d783a61a84072a61d96bc3 into a57ad64788568d1f76f63f52af499e3e30fa9149
496611fb
pull/6751/merge
5/150 ++ 27 --
Merge 0c06a25c03370ad036d0dd858149a1b46ef876dc into a57ad64788568d1f76f63f52af499e3e30fa9149
fcbc8113
pull/6744/merge
3/277 ++ 3 --
Merge 767bbbddb884bae419b292186e1af0174be9ab54 into a57ad64788568d1f76f63f52af499e3e30fa9149
200de5a7
pull/6501/merge
19/1,195 ++ 268 --
txn: Ed25519 hashed accounts (ed under pqsig) (#6738)
517c790f
master
23/826 ++ 232 --
Merge cee862ab7b4b863b7f261603727543f5e0d29c3f into 3874f81385d094c5974c5c2afff2af5a2c82b503
781df10e
pull/6759/merge
17/1,572 ++ 17 --
AVM: rsa_verify PSS schemes
Add PSS_SHA256 and PSS_SHA512 to rsa_verify. They verify RSASSA-PSS signatures (RFC 8017, section 8.1.2) with MGF1 over the digest's hash, a salt as long as the digest, and the 0xbc trailer, as TLS 1.3 and JOSE use. Other salt lengths and MGF1 hashes return 0. Under PSS_SHA512, a modulus below 1034 bits returns 0: the encoding needs 130 bytes, so no signature can verify. The length, key and signature rules are those of the PKCS1v15 schemes. The salt keeps the encoded message from being rebuilt and compared whole, as it is for PKCS#1 v1.5, so verification follows the steps of EMSA-PSS-VERIFY. The decrypted signature must be less than 2^(modBits-1), which also rejects one that does not fit when the encoding is a byte shorter than the modulus. The PSS_SHA512 floor is checked before the exponentiation. PSS shares the bracket costs. Its decoding takes 0.4 to 2.0 microseconds on an AMD Ryzen 7 7840HS, at most 2% of the worst exponentiation in each bracket, inside the 10% margin. Tests sign with crypto/rsa under all four schemes, with new 1033, 1034 and 2049 bit keys: under 1025, 1033 and 2049 bits the encoding is a byte shorter than the modulus, and 1034 bits is the PSS_SHA512 floor. An encoder independent of rsa_verify's builds the rejected encodings. Tests also run three Project Wycheproof RSASSA-PSS files, from the same commit as the PKCS#1 v1.5 ones.
cee862ab
pull/6759/head
8/468 ++ 71 --
AVM: rsa_verify opcode (experimental)
Add rsa_verify (0xe8) at AVM v14, held in the EXPERIMENTAL block with sumhash512 until its costs are confirmed on reference hardware. rsa_verify S takes a digest, a signature, a big-endian modulus and a uint64 public exponent, and verifies an RSASSA-PKCS1-v1_5 signature. Schemes are PKCS1v15_SHA256 and PKCS1v15_SHA512. The digest length, a modulus over 512 bytes, or a signature not exactly as long as the modulus fail the program. A modulus with a leading zero byte, under 1024 bits, or even; an exponent that is even, below 3 or above 65537; a signature not less than the modulus; or a padding or digest mismatch return 0. Verification is math/big exponentiation followed by re-encoding the expected message and comparing it whole. crypto/rsa is not used because what it accepts depends on the Go version and on GODEBUG settings (rsa1024min, fips140=only), which must not affect consensus. Cost is flat per 1024-bit bracket of the modulus length, using a new bracketCost: 1050 / 2650 / 5200 / 8250 for moduli up to 128 / 256 / 384 / 512 bytes. Each is the worst measured time, at e = 65535, times the rate implied by ecdsa_verify Secp256r1 (about 43 units per microsecond), plus 10%. Worst times on an AMD Ryzen 7 7840HS with go1.25.3: 20.0, 54.3, 107.7 and 167.9 microseconds. Tests include the Project Wycheproof 2048-bit RSASSA-PKCS1-v1_5 vectors (Apache License 2.0) under testdata/wycheproof.
b358b024
pull/6759/head
14/1,175 ++ 17 --
fix: keep the gitleaks binary out of the published package, and bump to 1.7.0 (#217)
8e3f6aa6
main
4/17 ++ 4 --
Merge d22af7ee54200a0c55df5809315d3fdbe8507001 into 6e315781de720b35ba49e326b909f8770afee2c0
4d085919
pull/6758/merge
3/10 ++ 96 --
txn: drop the pre-v42 PQSigEnabled gate
d22af7ee
remove-pqsig-enabled
3/10 ++ 96 --
Merge d800c60816c4bf33a1601aec32d86bac797aec0b into 3874f81385d094c5974c5c2afff2af5a2c82b503
6e315781
pull/6738/merge
23/826 ++ 232 --
algokey: cr by @nullun, no default scheme
d800c608
ed-scheme-support
3/62 ++ 18 --
crypto: cr by @jannotti, one ErrSigInvalid for every PQSig scheme
10144f18
ed-scheme-support
8/35 ++ 53 --
chore: enable workers logs, pin cloudflare account_id
ae7574d8
main
1/3 ++ 0 --
Merge b83c45cfba0d9f73f30a2d1caf103d98993809be into e144b20b8403da0a71da3ac99190fdf42f0ce436
06bcb089
pull/66/merge
10/1,261 ++ 1,294 --
chore(deps): Update all non-major dependencies
b83c45cf
renovate/all-non-major-dependencies
10/1,261 ++ 1,294 --