NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
NuGet · #1277 most downloaded on NuGet
Internal implementation package not meant for direct consumption. Please do not reference directly.
Last release 6 months ago
09 Apr 2026
Ships fairly regularly
a new release about every 9 months
Rarely documented
notes for 3 of 17 stable releases
1 version withdrawn
withdrawn after publishing
127 years old
20 releases · first in 1900
This point release includes all the changes from 1.0.21-stable, plus:
This point release includes all the changes from 1.0.21-stable, plus:
crypto_kem_mlkem768_*() functions.crypto_kem_*() functions. X-Wing is the recommended KEM for mostcrypto_hash_sha3256_*()crypto_hash_sha3512_*(), with both one-shot and streaming APIs.crypto_pwhash with the interactive settings can be used in purecrypto_core_keccak1600_state has been added.crypto_ipcrypt_nd_keygen() helper function.crypto_auth_hmacsha256_init and crypto_auth_hmacsha512_init now_init functions.One column per quarter.
Version 1.0.21 This point release includes all the changes from 1.0.20-stable, which include a security fix for the crypto_core_ed25519_is_valid_point…
Version 1.0.21
This point release includes all the changes from 1.0.20-stable, which include a security fix for the crypto_core_ed25519_is_valid_point() function, as well as two new sets of functions:
crypto_ipcrypt_* functions implement mechanisms for securely encrypting and anonymizing IP addresses.sodium_bin2ip and sodium_ip2bin helper functions have been added to complement the crypto_ipcrypt_* functions and easily convert addresses between bytes and strings.crypto_xof_shake* and crypto_xof_turboshake* functions are standard extendable output functions. From input of any length, they can derive output of any length with the same properties as hash functions. These primitives are required by many post-quantum mechanisms, but can also be used for a wide range of applications, including key derivation, session encryption and more.Version 1.0.20-stable
crypto_core_ed25519_is_valid_point() now properly rejects small-order points that are not in the main subgroup((nonnull)) attributes have been relaxed on some crypto_stream* functions to allow NULL output buffers when the output length is zerocrypto_aead_aes256gcm_is_available is exported to JavaScriptThis point release includes all the changes from 1.0.19-stable, mainly addressing compilation issues and improvements to the .NET packages.
This point release includes all the changes from 1.0.19-stable, mainly addressing compilation issues and improvements to the .NET packages.
zig build now requires Zig 0.12.crypto_kdf_hkdf_sha512_statebytes() was added.crypto_aead_aegis*() functions are now exported in JavaScript builds--memory-init-file option has been removed.Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →