Skip to content

Security #18

@ERussel

Description

@ERussel

Hello! Thank you for such useful implementation. I have several questions:

  1. Is there any security audit conducted for the library as part of the w3f grant?

  2. Looks like in sr25519_keypair_ed25519_to_uniform implementation missing secret_key_key[31] &= 0b0111_1111 operation. As I understand it protects against invalid value which still have nonzero probability. Am I missing something?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions