NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
crates.io · #1487 most downloaded on crates.io
Pure Rust implementation of the X.509 Public Key Infrastructure Certificate format as described in RFC 5280
Last release 3 months ago
09 Jul 2026
Release timing varies
gaps range from 2 weeks to 10 months
Most releases are documented
notes for 9 of 11 stable releases
Nothing withdrawn
no release was ever pulled
5 years old
21 releases · first in 2022
One column per quarter.
DecodeValue for x509_cert::Time
DecodeValue for x509_cert::time::Time (#1986)FromStr for x509_cert::time::Time (#1961)Hash for Name (#1764)Ord for CrlReason (#1869)DirectoryString::BmpString (#1794)Crl builder (#1759)Time::now method (#1761)Validity::infinity helper (#1528)Validity::new method (#1529)spki types without *Owned suffixes (#1534)x509_cert::builder::AsyncBuilder using AsyncSigner (#1280)AsExtension into Criticality + AsExtension (#2109)Profile in the CrlBuilder (#1870)x509_cert::request (#1581)x509_cert::builder::Profile to BuilderProfile (#1514, #1517)Name is now a new type over RdnSequence (#1499)RelativeDistinguishedName fields private (#1510)RdnSequence fields private (#1508)CertificateInner fields private (#1505)get_extension/filter_extensions (#1497)check_name_encoding now allow extraneous components (#1447)rand to v0.10 (#2212)der to v0.8 (#2234)digest to v0.11 (#2237)sha2 to v0.11 (#2273)spki to v0.8 (#2277)signature to v3 (#2326)SystemTime should use UtcTime if date <= 2049 (#1969)Certificate::load_pem_chain (#1965)std requirement for x509_cert::builder (#1709)RelativeDistinguishedName::encode_from_string (#1509)Co-authored-by: Tony Arcieri bascule@gmail.com
DecodeValue for x509_cert::time::Time (#1986)FromStr for x509_cert::time::Time (#1961)Hash for Name (#1764)Ord for CrlReason (#1869)DirectoryString::BmpString (#1794)Crl builder (#1759)Time::now method (#1761)Validity::infinity helper (#1528)Validity::new method (#1529)spki types without *Owned suffixes (#1534)x509_cert::builder::AsyncBuilder using AsyncSigner (#1280)Decompose AsExtension into Criticality + AsExtension (#2109)
Improve extension API flexibility and ergonomics (#2120)
Expose Profile in the CrlBuilder (#1870)
Ensure a serial number can be stored in a database (#1868)
Move the CSR builder x509_cert::request (#1581)
Rename x509_cert::builder::Profile to BuilderProfile (#1514 && #1517)
Name is now a new type over RdnSequence (#1499)
make RelativeDistinguishedName fields private (#1510)
make RdnSequence fields private (#1508)
make (Tbs)CertificateInner fields private (#1505)
rename helpers to get_extension/filter_extensions (#1497)
check_name_encoding now allow extraneous components (#1447)
Accept RFC-invalid certificates as TrustAnchors (#1403)
Edition changed to 2024 and MSRV bumped to 1.85 (#1689)
Bump rand to v0.10 (#2212)
Bump der to v0.8 (#2234)
Bump digest to v0.11 (#2237)
Bump sha2 to v0.11 (#2273)
Bump spki to v0.8 (#2277)
Bump signature to v3 (#2326)
SystemTime should use UtcTime if date <= 2049 (#1969)Certificate::load_pem_chain (#1965)Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Signed Certificate Timestamp (SCT) extension support ([#1134])
add_attribute to RequestBuilder ([#1137])
Added TryFrom for RelativeDistinguishedName ([#1092])
Support for RandomizedSigner in builder ([#1007])
RandomizedSigner in builder (#1007)Time::INFINITY (#1024)std::net::IpAddr (#1035)CertReq builder (#1034)UTCTime range being 1970-2049 (#1052)SignatureBitStringEncoding trait (#1048)ErrorKind::Value for overlength serial (#988)hex-literal to v0.4.1 (#999)zlint isn't installed (#1018)Nothing published for this version
Nothing published for this version
Deprecate encode_from_string functions ([#951])
Feature-gated Arbitrary impl for Certificate ([#761])
Arbitrary impl for Certificate (#761)Display impl for SerialNumber (#820)std feature implies const-oid/std (#874)PrintableString (#794)SerialNumber is now a specialized object (#795)der to v0.7 (#899)spki to v0.7 (#900)alloc feature: now unconditionally required (#841)Nothing published for this version
Support TeletexString in DirectoryString ([#692])
- Initial release
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →