NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
crates.io · #3239 most downloaded on crates.io
Rust SDK for C2PA (Coalition for Content Provenance and Authenticity) implementors
Last release today
06 Oct 2026
Ships on a steady schedule
a new release about every 2 weeks
Most releases are documented
notes for 47 of the last 60 stable releases
4 versions withdrawn
withdrawn after publishing
5 years old
247 releases · first in 2022
One column per quarter.
*(sdk)* Introduces get_supported_types api
Es512 support without new dependencies
Add CAWG support for fragmented BMFF
[breaking] Merge c2pa-status-tracker crate into c2pa
[breaking] Merge c2pa-crypto crate into core c2pa crate
Switch zip dependency to a non-yanked version
[breaking] Merge CAWG identity SDK into main C2PA crate
14 May 2025
Adds c_api for dynamic library releases
14 May 2025
Return an error if a manifest cannot be read
_24 April 2025_ ### Fixed * Fix missing Action fields
Dynamic assertions should be gathered assertions
Populates claim signature field in ingredient v3.
Update openssl to address a recently-announced vulnerability
*(cawg_identity)* Add BuiltInSignatureVerifier
Make sure manifests are signed with end-entity certs
*(c2patool)* Fixes crash and improves cawg support
20 March 2025
Adds allActionsIncluded flag to Actions Assertion
19 March 2025
Adds reader.post_validate method for CAWG validation support
18 March 2025
reader.post_validate method for CAWG validation support (#976)StatusTracker to IdentityAssertion parsing and validation APIs (#943)Sync to AsyncDynamicAssertion (#953)StatusTracker interface (#937)RST0..=RST7 check from the has_length method for the JPEG asset handler. (#968)v1_api without file_io didn't compile (#944)openssl feature flag (#940)Add support for DynamicAssertions in JSON format
15 February 2025
AsRef<Path> in jumbf_io functions (#910)Restore support for claim_generator_hints
11 February 2025
_06 February 2025_ ### Documented * Fix reported errors for docs (#903) ### Fixed * Update error reporting (#906) * Repair cargo test
06 February 2025
Remove dependency on SubtleCrypto
31 January 2025
*(cawg_identity)* Split CredentialHolder into sync and async versions
30 January 2025
CredentialHolder into sync and async versions (#891)Allow synchronous DynamicAssertion
29 January 2025
*(crypto)* Make box_size parameter on c2pa_crypto::sign an Option
24 January 2025
box_size parameter on c2pa_crypto::cose::sign an Option (#879)Debug supertrait from DynamicAssertion and CredentialHolder traits (#876)Change the definition of Signer.raw_signer() to return an Option defaulting to None
22 January 2025
Signer.raw_signer() to return an Option defaulting to None (#869)_22 January 2025_ ### Fixed * Make alg enum exhaustive
22 January 2025
*(crypto)* Add rsa crate support to rust_native_crypto feature
16 January 2025
rsa crate support to rust_native_crypto feature (#853)c2pa-crypto crate API (#813)c2pa_crypto::cose::signing_time_from_sign1 (#812)c2pa_crypto crate (#807)c2pa_crypto (#803)c2pa_crypto (#801)c2pa_crypto::Verifier::verify_trust (#798)c2pa_crypto::cose::Verifier (#797)cert_chain_from_sign1 in c2pa_crypto (#796)signing_alg_from_sign1 into c2pa-crypto (#795)get_cose_sign1 into c2pa-crypto crate (#794)verify_trust into c2pa_crypto (#784)c2pa_crypto::CertificateAcceptancePolicy (#779)DynamicAssertion::content gets a properly populated PartialClaim (#842)claim_v2 changes from #707 into c2pa_crypto (#811)#[cfg] directives (#783)write_cai OOB insertion (#762)Add RawSigner trait to c2pa-crypto (derived from c2pa::Signer)
12 December 2024
RawSigner trait to c2pa-crypto (derived from c2pa::Signer) (#716)DynamicAssertion trait (#566)c2pa-crypto with cargo check (#768)is_none() (#704)c2pa::Signer dependency on c2pa_crypto::TimeStampProvider (#718)Factor status tracking infrastructure into its own crate
Add fragmented mp4 Builder and Reader support
_24 October 2024_ ### Documented * Update API documentation
Adds identified RangeType to region of interest
Harden SDK against attempting buffers that are too large
Changelog contained duplicate entries for 0.16.1
No-op change to start using release-plz to manage releases
07 October 2024
chore: Remove deprecated actions-rs/clippy-check action
04 October 2024
(MINOR) ensures release bumps minor version
Fix error when trying to sign BMFF content with Builder.
17 September 2024
upgrades to riff@2.0.0, preventing panic on invalid riff files
_30 August 2024_ * (MINOR) Fragmented BMFF media
30 August 2024
Depend on url crate version 2.5.2 or newer
29 August 2024
Inline certs for wasm test signer
17 August 2024
Fix remote embedding RIFF when specifying mime type
15 August 2024
AssertionDefinition and ActionTemplate in public API (#522)Use timestamp with OpenSSL validation to prevent check chain check er…
Update crate to fix bad certificate dump content
26 July 2024
Ensure Ingredient data_types make it to the store and back.
18 July 2024
SignatureInfo publicly (#501)Fetching of databoxes must always use HashedURI to enforce hash checks.
(PATCH) ensures temp files are removed
Add data_type (future) to Ingredient_V2
Support metadata field in claims.
Add iterators over manifests and resources in unstable API
19 June 2024
Debug w/ detailed manifest for Reader (#473)Steps toward removing RemoteSigner APIs.
10 May 2024
(Minor) Additional unit tests and fixes for injection (or previously untested) issues.
07 May 2024
Add video/quicktime to the list of BMFF MIME types
Add Sync trait to TrustHandlerConfig
03 April 2024
Sync trait to TrustHandlerConfig (#440)Adds Action changes field as option vec of serde_json value
25 March 2024
(MINOR) Adds Send trait to TrustHandlerConfig
13 March 2024
Roll back rasn-* version requirements since 0.12.6 was yanked
12 March 2024
Adds a Manifest::composed manifest method
Your coding agent can read these notes before it upgrades. Set up the MCP server →