NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
PyPI · #165 most downloaded on PyPI
Python binding to the Networking and Cryptography (NaCl) library
Last release 9 months ago
01 Jan 2026
Release timing varies
gaps range from 2 weeks to 3.7 years
Most releases are documented
notes for 14 of 19 stable releases
Nothing withdrawn
no release was ever pulled
13 years old
19 releases · first in 2013
Updated libsodium to 1.0.20-stable (2025-12-31 build) to resolve CVE-2025-69277.
Updated libsodium to 1.0.20-stable (2025-12-31 build) to resolve CVE-2025-69277.
bump for 1.6.1
bump for 1.6.1 (#906)
The MAKE environment variable can now be used to specify the make binary that should be used in the build process.
One column per quarter.
BACKWARDS INCOMPATIBLE: Removed support for Python 3.6 and 3.7.
BACKWARDS INCOMPATIBLE: Removed support for Python 3.6 and 3.7.
Added support for the low level AEAD AES bindings.
Added support for crypto_core_ed25519_from_uniform.
Update libsodium to 1.0.20-stable (2025-08-27 build).
Added support for free-threaded Python 3.14.
Added support for Windows on ARM wheels.
BACKWARDS INCOMPATIBLE: Removed support for Python 2.7 and Python 3.5.
BACKWARDS INCOMPATIBLE: Removed support for Python 2.7 and Python 3.5.
BACKWARDS INCOMPATIBLE: We no longer distribute manylinux1 wheels.
Added manylinux2014, manylinux_2_24, musllinux, and macOS universal2 wheels (the latter supports macOS arm64).
Update libsodium to 1.0.18-stable (July 25, 2021 release).
Add inline type hints.
BACKWARDS INCOMPATIBLE: We no longer distribute 32-bit manylinux1 wheels. Continuing to produce them was a maintenance burden.
Update libsodium to 1.0.18.
BACKWARDS INCOMPATIBLE: We no longer distribute 32-bit manylinux1 wheels. Continuing to produce them was a maintenance burden.
Added support for Python 3.8, and removed support for Python 3.4.
Add low level bindings for extracting the seed and the public key from crypto_sign_ed25519 secret key
Add low level bindings for deterministic random generation.
Add wheel and setuptools setup_requirements in setup.py (#485)
Fix checks on very slow builders (#481, #495)
Add low-level bindings to ed25519 arithmetic functions
Update low-level blake2b state implementation
Fix wrong short-input behavior of SealedBox.decrypt() (#517)
Raise CryptPrefixError exception instead of InvalidkeyError when trying to check a password against a verifier stored in a unknown format (#519)
Add support for minimal builds of libsodium. Trying to call functions not available in a minimal build will raise an UnavailableError exception. To compile a minimal build of the bundled libsodium, set the SODIUM_INSTALL_MINIMAL environment variable to any non-empty string (e.g. SODIUM_INSTALL_MINIMAL=1) for setup.
Run and test all code examples in PyNaCl docs through sphinx's doctest builder.
Added support for Python 3.7.
Update libsodium to 1.0.16.
Run and test all code examples in PyNaCl docs through sphinx's doctest builder.
Add low-level bindings for chacha20-poly1305 AEAD constructions.
Add low-level bindings for the chacha20-poly1305 secretstream constructions.
Add low-level bindings for ed25519ph pre-hashed signing construction.
Add low-level bindings for constant-time increment and addition on fixed-precision big integers represented as little-endian byte sequences.
Add low-level bindings for the ISO/IEC 7816-4 compatible padding API.
Add low-level bindings for libsodium's crypto_kx... key exchange construction.
Set hypothesis deadline to None in tests/test_pwhash.py to avoid incorrect test failures on slower processor architectures. GitHub issue #370
Update hypothesis minimum allowed version.
Update hypothesis minimum allowed version.
Infrastructure: add proper configuration for readthedocs builder runtime environment.
Infrastructure: add jenkins support for automatic build of manylinux1 binary wheels
Update libsodium to 1.0.15.
Infrastructure: add jenkins support for automatic build of manylinux1 binary wheels
Added support for SealedBox construction.
Added support for argon2i and argon2id password hashing constructs and restructured high-level password hashing implementation to expose the same interface for all hashers.
Added support for 128 bit siphashx24 variant of siphash24.
Added support for from_seed APIs for X25519 key pair generation.
Dropped support for Python 3.3.
reorder link time library search path when using bundled libsodium
reorder link time library search path when using bundled libsodium
Fixed a circular import bug in nacl.utils.
Fixed a circular import bug in nacl.utils.
Dropped support for Python 2.6.
Dropped support for Python 2.6.
Added shared_key() method on Box.
You can now pass None to nonce when encrypting with Box or SecretBox and it will automatically generate a random nonce.
Added support for siphash24.
Added support for blake2b.
Added support for scrypt.
Update libsodium to 1.0.11.
Default to the bundled libsodium when compiling.
All raised exceptions are defined mixing-in nacl.exceptions.CryptoError
Fix an issue with absolute paths that prevented the creation of wheels.
Fix an issue with absolute paths that prevented the creation of wheels.
PyNaCl has been ported to use the new APIs available in cffi 1.0+. Due to this change we no longer support PyPy releases older than 2.6.
PyNaCl has been ported to use the new APIs available in cffi 1.0+. Due to this change we no longer support PyPy releases older than 2.6.
Python 3.2 support has been dropped.
Functions to convert between Ed25519 and Curve25519 keys have been added.
The low-level API (nacl.c.*) has been changed to match the upstream NaCl C/C++ conventions (as well as those of other NaCl bindings). The order of arg
The low-level API (nacl.c.*) has been changed to match the upstream NaCl C/C++ conventions (as well as those of other NaCl bindings). The order of arguments and return values has changed significantly. To avoid silent failures, nacl.c has been removed, and replaced with nacl.bindings (with the new argument ordering). If you have code which calls these functions (e.g. nacl.c.crypto_box_keypair()), you must review the new docstrings and update your code/imports to match the new conventions.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →