NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Packagist · #106 most downloaded on Packagist
Constant-time Implementations of RFC 4648 Encoding (Base-64, Base-32, Base-16)
Last release 1 years ago
24 Sep 2025
Ships fairly regularly
a new release about every 10 months
Some releases are documented
notes for 10 of 39 stable releases
Nothing withdrawn
no release was ever pulled
11 years old
39 releases · first in 2016
This release fixes a bug with base64 codecs when ext-sodium installed.
This release fixes a bug with base64 codecs when ext-sodium installed.
Full Changelog: v3.1.2...v3.1.3
One column per quarter.
Thanks @TimWolla for identifying a performance hit caused by attempting to find global functions such as strlen() in the current namespace before the
Thanks @TimWolla for identifying a performance hit caused by attempting to find global functions such as strlen() in the current namespace before the global namespace.
Full Changelog: v3.1.1...v3.1.2
Remove mbstring.func_overload compatibility layer by @TimWolla in #58
mbstring.func_overload compatibility layer by @TimWolla in #58Full Changelog: v3.1.0...v3.1.1
Important : If you enable ext-sodium, some codecs will now be faster with our library: hex , base64 , base64url . This requires the actual extension b
Important: If you enable ext-sodium, some codecs will now be faster with our library: hex, base64, base64url. This requires the actual extension be installed; sodium_compat will not provide these implementations.
As with the recent sodium_compat release, this library now incorporates fuzz-testing and mutation testing as part of our development strategy. Fuzz testing is enabled on pull requests; mutation tests on releases.
The current metrics for a mutation test run (using the latest version of Infection):
1782 mutations were generated:
1470 mutants were killed by Test Framework
296 covered mutants were not detected
5 errors were encountered
11 time outs were encountered
Metrics:
Mutation Code Coverage: 100%
Covered Code MSI: 83%
We set the minimum MSI for covered code to 80% by policy, but will slowly be increasing it in future releases.
Base32::doEncode()’s $pad parameter by @TimWolla in #60Full Changelog: v3.0.0...v3.1.0
Supports PHP 8.4 without deprecation warnings for implicit null
Backported fix from https://github.com/paragonie/constant_time_encoding/releases/tag/v3.1.3
Backported fix from https://github.com/paragonie/constant_time_encoding/releases/tag/v3.1.3
Full Changelog: v2.8.1...v2.8.2
I'm going to continue backporting important fixes to v2.x for PHP 7 support while there is still significant v2 usage .
I'm going to continue backporting important fixes to v2.x for PHP 7 support while there is still significant v2 usage.
Full Changelog: v2.8.0...v2.8.1
This release backports the ext-sodium performance enhancement from v3.1.0 .
This release backports the ext-sodium performance enhancement from v3.1.0.
Full Changelog: v2.7.0...v2.8.0
chore: fix ci deprecations by @Chris53897 in #57
SensitiveParameter attribute to all string parameters by @TimWolla in #48CanonicalTrait::getNextChar() an abstract method instead a `@m… by @TimWolla in #54Full Changelog: v2.6.3...v2.7.0
#40 - Improved performance of Hex #43 / #46 - Add .gitattributes to .gitattributes #41 - Consistent use of \ global namespace qualifiers
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →