function: cryptography
1245 products, primary matches first, then adoption-weighted; health v2 shown.
| Product | Health v2 | Stars | Maturity |
|---|---|---|---|
| Holochain Holochain is an open-source Rust framework for building peer-to-peer applications that run on users' own devices without centralized server… | 98 | 1392 | active |
| eclipse-milo/milo Eclipse Milo is an open-source Java implementation of the OPC UA (IEC 62541) protocol, providing a high-performance communication stack plu… | 97 | 1382 | active |
| gettalong/hexapdf HexaPDF is a pure Ruby library with an accompanying CLI application for creating, manipulating, merging, encrypting, signing, and optimizin… | 76 | 1382 | active |
| rzcoder/node-rsa A pure TypeScript RSA cryptography library for Node.js and browsers supporting key generation, encryption/decryption, and signing/verificat… | 81 | 1381 | active |
| mrrfv/open-android-backup Open Android Backup is a shell script paired with a Flutter companion app that backs up Android devices over ADB without root, vendor lock-… | 82 | 1372 | active |
| lightningdevkit/rust-lightning Rust-Lightning (LDK) is a highly performant, runtime-agnostic Rust library implementing the Lightning Network protocol, including channel s… | 77 | 1372 | stable |
| starkware-libs/cairo-lang Cairo is a programming language for writing provable programs, developed by StarkWare for STARK-based zero-knowledge proofs and StarkNet sm… | 68 | 1369 | active |
| aws/s2n-quic s2n-quic is a Rust implementation of the IETF QUIC transport protocol, offering a simple API with configurable providers for TLS (s2n-tls o… | 99 | 1366 | active |
| Yutaka-Sawada/MultiPar MultiPar is a Windows Parchive (PAR2) tool for creating recovery files, verifying file integrity, and repairing damaged or missing files. I… | 77 | 1362 | active |
| mullvad/gotatun GotaTun is a userspace WireGuard implementation in Rust, forked from Cloudflare's BoringTun, providing both a library and a standalone tunn… | 93 | 1360 | active |
| backup/backup Backup is a Ruby-based system utility for Linux and macOS that performs full-stack backup operations via an elegant Ruby DSL. It supports m… | 23 | 4858 | maintenance |
| chili-chips-ba/wireguard-fpga An open-source, wire-speed hardware implementation of the WireGuard VPN protocol on a low-cost Artix-7 FPGA, written in Verilog with an ope… | 68 | 1355 | active |
| mysteriumnetwork/node Mysterium Node is the official Go implementation of the Mysterium decentralized VPN (dVPN) network protocol, letting users run nodes that p… | 98 | 1348 | active |
| xelaj/mtproto A full-native Go implementation of the Telegram MTProto protocol, providing a client library for interacting with the Telegram API without … | 23 | 1346 | active |
| ACINQ/eclair Eclair is a Scala implementation of a Lightning Network node for Bitcoin, following the BOLT specifications. It provides a JSON HTTP API fo… | 95 | 1343 | active |
| abhimanyu003/sttr sttr is a cross-platform command-line tool written in Go for performing various string transformation operations such as hashing, encoding/… | 64 | 1342 | active |
| tkaitchuck/aHash aHash is a non-cryptographic hash function library for Rust that leverages AES hardware instructions (AES-NI) for extremely fast hashing. I… | 50 | 1342 | stable |
| adamyaxley/Obfuscate A header-only C++14 library that obfuscates string literals at compile time using constexpr XOR encryption with a random 64-bit key, preven… | 63 | 1338 | stable |
| minibear2021/wechatpayv3 A Python SDK for WeChat Pay API v3 supporting both direct-merchant and service-provider modes. It handles automatic platform certificate up… | 87 | 1332 | active |
| inference-labs-inc/dsperse DSperse is a proving-system-agnostic tool for verifiable AI that decomposes ONNX neural network models into circuit-compatible segments and… | 82 | 1327 | active |
| wafinfo/DecryptTools A comprehensive encryption/decryption tool for penetration testers, supporting 22+ decryption schemes for Chinese enterprise software (OA s… | 22 | 1327 | active |
| beakthoven/TrickyStoreOSS A fully open-source Magisk module that spoofs Android hardware keystore attestation, serving as a FOSS rewrite of the proprietary TrickySto… | 85 | 1325 | active |
| zalando/go-keyring A cross-platform Go library for setting, getting, and deleting secrets in the operating system's native keyring (macOS Keychain, Windows Cr… | 78 | 1321 | active |
| maqp/tfc Tinfoil Chat (TFC) is a peer-to-peer, end-to-end encrypted messaging system built on Tor onion services and high-assurance hardware archite… | 74 | 1320 | active |
| kspearrin/Otp.NET Otp.NET is a C# library implementing TOTP (RFC 6238) and HOTP (RFC 4226) one-time password algorithms, available on NuGet. It supports conf… | 54 | 1319 | stable |
| riverrun/comeonin Comeonin is a specification (behaviours) for password hashing libraries in Elixir, defining Comeonin and Comeonin.PasswordHash behaviours. … | 34 | 1317 | stable |
| davewasmer/devcert A Node.js library that generates trusted SSL/TLS certificates for local HTTPS development. It creates a local certificate authority, regist… | 57 | 1308 | active |
| inference-labs-inc/JSTprove JSTprove is a Rust CLI toolkit that generates zero-knowledge proofs of machine learning inference on ONNX models, built on Polyhedra Networ… | 70 | 1306 | active |
| sebastianfeldmann/phpbu PHPBU is a PHP-based command-line backup utility that creates, compresses, validates, and encrypts backups of databases and directories. It… | 92 | 1305 | active |
| JFreegman/toxic Toxic is a terminal-based (ncurses) instant messaging client for the Tox peer-to-peer network, offering end-to-end encrypted text chat, fil… | 86 | 1303 | active |
| google/longfellow-zk A C++ library from Google implementing zero-knowledge proof protocols for identity verification, supporting standards like ISO MDOC, JWT, a… | 75 | 1303 | active |
| GoogleCloudPlatform/berglas Berglas is a command line tool and Go library for managing secrets on Google Cloud, encrypting them with Cloud KMS and storing them in Clou… | 94 | 1302 | active |
| Bitcoin-ABC/bitcoin-abc Bitcoin ABC is the reference full-node software implementation for the eCash (XEC) cryptocurrency, forked from Bitcoin Core. It enables pee… | 100 | 1301 | active |
| qwqdanchun/Pillager Pillager is a C# post-exploitation information gathering tool that exports and decrypts sensitive data from target Windows machines, includ… | 20 | 1294 | active |
| blueimp/JavaScript-MD5 A zero-dependency JavaScript implementation of the MD5 hash algorithm, supporting hex-encoded and raw MD5 as well as HMAC-MD5. It works in … | 10 | 4559 | maintenance |
| RickdeJager/stegseek Stegseek is a lightning-fast command-line cracker for steghide steganography, built as a fork of the original steghide project that can tes… | 23 | 1288 | stable |
| jvdsn/crypto-attacks A collection of Python implementations of cryptographic attacks and utilities, built on SageMath and PyCryptodome. It covers attacks agains… | 60 | 1285 | active |
| juliansteenbakker/flutter_secure_storage A Flutter plugin for securely storing sensitive key-value data using platform-specific encrypted storage such as iOS/macOS Keychain, Androi… | 98 | 1282 | active |
| keepassx/keepassx KeePassX is a cross-platform desktop password manager that stores credentials and other sensitive data in an encrypted database compatible … | 10 | 4523 | maintenance |
| jenssegers/optimus A PHP library that obfuscates internal integer IDs using Knuth's multiplicative hashing, producing reversible obfuscated integers instead o… | 23 | 1275 | stable |
| ulyssa/iamb iamb is a terminal-based Matrix chat client built with Vim keybindings, written in Rust. It supports threads, spaces, E2EE, read receipts, … | 77 | 1274 | active |
| s3ql/s3ql S3QL is a FUSE-based UNIX file system that stores all its data in cloud object storage services like Amazon S3, Google Storage, or OpenStac… | 93 | 1269 | active |
| selfxyz/self Self is an open-source monorepo for a privacy-preserving identity verification platform that lets users generate zero-knowledge proofs from… | 73 | 1259 | active |
| WICG/webpackage A collection of IETF/WICG specifications and Go tooling for packaging websites into portable bundles, including Signed HTTP Exchanges (SXG)… | 72 | 1257 | active |
| btcsuite/btcwallet btcwallet is a secure hierarchical deterministic (HD) bitcoin wallet daemon written in Go. It acts as an RPC client to a btcd full node and… | 67 | 1256 | active |
| psanford/wormhole-william A Go implementation of the magic wormhole protocol providing end-to-end encrypted transfer of text, files, and directories between computer… | 39 | 1248 | active |
| bareos/bareos Bareos is an open-source (AGPLv3) network backup and recovery solution for mixed IT environments, supporting Linux, Windows, FreeBSD and ma… | 99 | 1246 | active |
| latchset/clevis Clevis is a pluggable framework for automated encryption and decryption, producing JWE ciphertexts that can be decrypted without user inter… | 80 | 1246 | active |
| input-output-hk/daedalus Daedalus is the open-source desktop wallet for ada, the cryptocurrency of the Cardano blockchain. Built with Electron and TypeScript, it is… | 94 | 1244 | active |
| SeedSigner/seedsigner SeedSigner is a FOSS application that turns a Raspberry Pi Zero with a camera and screen into an air-gapped, stateless Bitcoin signing devi… | 86 | 1244 | active |
| merkletreejs/merkletreejs A JavaScript/TypeScript library for constructing Merkle Trees and generating and verifying cryptographic inclusion proofs. It supports mult… | 47 | 1241 | stable |
| node-modules/utility A Node.js utility library providing hashing functions (md5, sha1, sha256, hmac), base64 encoding/decoding, and HTML/URL escaping helpers. I… | 65 | 1240 | stable |
| Jacalz/rymdport Rymdport is a cross-platform GUI application for securely sharing files, folders, and text between devices using end-to-end encryption. It … | 61 | 1240 | active |
| ProtonMail/gopenpgp GopenPGP is a high-level OpenPGP wrapper library for Go, developed by Proton Mail and built on a fork of the golang crypto library. It prov… | 91 | 1239 | stable |
| horizontalsystems/unstoppable-wallet-android Unstoppable is an open-source, non-custodial multi-wallet Android app for Bitcoin, Ethereum, BNB Chain, Avalanche, Solana, Zcash, and other… | 99 | 1238 | active |
| HotBoy-java/PotatoTool PotatoTool is a comprehensive Java-based network security GUI tool for security professionals, red/blue team members, and enthusiasts. It i… | 29 | 1237 | active |
| rauc/rauc RAUC (Robust Auto-Update Controller) is an open-source update client and host tool for embedded Linux systems that manages fail-safe, atomi… | 87 | 1232 | stable |
| HemmeligOrg/Hemmelig.app Hemmelig is a self-hostable web application for sharing sensitive information via encrypted, self-destructing secret links with client-side… | 82 | 1229 | active |
| apache/teaclave-sgx-sdk Apache Teaclave SGX SDK (Rust SGX SDK) is a Rust-based software development kit for building Intel SGX enclave applications with memory saf… | 62 | 1229 | active |
| duino-coin/duino-coin Duino-Coin is a centralized, eco-friendly proof-of-work cryptocurrency (DUCO) designed to be mined with low-power devices such as Arduino b… | 65 | 1226 | active |
| transmissions11/solmate Solmate is a collection of gas-optimized, opinionated Solidity smart contract building blocks including token standards (ERC20, ERC721, ERC… | 37 | 4288 | maintenance |
| Tylous/SourcePoint SourcePoint is a Go-based polymorphic C2 profile generator for Cobalt Strike command and control servers. It generates unique malleable C2 … | 30 | 1220 | active |
| nervosnetwork/ckb Nervos CKB (Common Knowledge Base) is the layer-1 public permissionless blockchain node implementation of the Nervos Network, written in Ru… | 93 | 1219 | active |
| zkonduit/ezkl EZKL is a Rust-based library and command-line tool that converts deep learning models and arbitrary computational graphs (exported as ONNX)… | 75 | 1219 | active |
| liamcottle/reticulum-meshchat Reticulum MeshChat is an Electron-based mesh network communications app built on the Reticulum Network Stack. It lets users exchange encryp… | 88 | 1218 | active |
| qtumproject/qtum Qtum Core is the reference full-node wallet and daemon for the Qtum hybrid blockchain, which combines Bitcoin's UTXO model with Ethereum Vi… | 86 | 1212 | active |
| hyphanet/fred Fred (Freenet REference Daemon) is the core node software of Hyphanet (formerly Freenet), a peer-to-peer platform for censorship-resistant,… | 89 | 1210 | active |
| mgeeky/PackMyPayload PackMyPayload is a Python CLI proof-of-concept tool that packages files or directories into container formats (ZIP, 7zip, PDF, ISO, IMG, CA… | 32 | 1209 | active |
| emn178/online-tools A collection of browser-based online tools for hashing (md2, md5, sha1, sha2, sha512), base64, and HTML encode/decode operations. It runs e… | 77 | 1208 | active |
| pyca/pynacl PyNaCl is a Python binding to libsodium, a fork of the Networking and Cryptography (NaCl) library. It provides high-level access to modern … | 77 | 1205 | stable |
| ksdme/ut A fast, lightweight Rust CLI utility toolkit that bundles many common developer utilities (encoding, hashing, JWT, UUID generation, and mor… | 72 | 1202 | active |
| floating/frame Frame is a system-wide Web3 wallet platform for macOS, Windows, and Linux that exposes local JSON-RPC endpoints so any browser, CLI, or nat… | 39 | 1202 | active |
| facebookincubator/fizz Fizz is a C++14 implementation of the TLS 1.3 protocol, supporting all major handshake modes including PSK resumption, early data, client a… | 96 | 1200 | active |
| openfheorg/openfhe-development OpenFHE is an open-source C++ library for fully homomorphic encryption (FHE), implementing all major schemes (BFV, BGV, CKKS, FHEW/TFHE, LM… | 88 | 1192 | active |
| dalek-cryptography/curve25519-dalek A pure-Rust library providing group operations on the Curve25519 and ristretto255 elliptic curves, along with related crates for Ed25519 si… | 68 | 1188 | stable |
| FiloSottile/passage passage is a fork of the password-store (pass) CLI password manager that uses age encryption instead of GnuPG. It stores secrets as age-enc… | 23 | 1187 | active |
| bitshares/bitshares-core BitShares Core is the node software and command-line wallet for the BitShares blockchain, a decentralized exchange (DEX) platform. It provi… | 53 | 1186 | active |
| google/end-to-end A JavaScript crypto library implementing OpenPGP (RFC 4880) and OTR for encrypting, decrypting, digitally signing, and verifying messages. … | 10 | 4125 | maintenance |
| bitcoinjs/bip39 A JavaScript library implementing Bitcoin BIP39 mnemonic code for generating deterministic keys from entropy. It supports multiple language… | 61 | 1179 | stable |
| briansmith/ring ring is a Rust library providing safe, fast cryptographic primitives (hashing, AEAD, signatures, key agreement) built largely on BoringSSL'… | 75 | 4104 | maintenance |
| data61/MP-SPDZ MP-SPDZ is a versatile C++ framework for secure multi-party computation (MPC) supporting many protocols across various security models, inc… | 85 | 1178 | active |
| google/certificate-transparency-go Google's Go implementation of Certificate Transparency (RFC 6962), providing libraries for parsing and auditing TLS certificates, client li… | 82 | 1174 | active |
| mobilecoinfoundation/mobilecoin MobileCoin is a privacy-preserving cryptocurrency payments network designed for mobile devices, implemented in Rust. The repository contain… | 66 | 1172 | active |
| corda/corda Corda is an open-source blockchain/distributed ledger platform designed for business use, enabling interoperable networks that transact wit… | 67 | 4074 | maintenance |
| wavesplatform/Waves The reference implementation of the Waves blockchain node, written in Scala, that processes and validates transactions, generates and store… | 87 | 1168 | active |
| XMR-Stak xmr-stak is a free, open-source, high-performance miner for Monero (RandomX) and unified CryptoNight-based cryptocurrencies, supporting CPU… | 23 | 4059 | maintenance |
| ProvableHQ/snarkVM snarkVM is a zero-knowledge virtual machine (zkVM) for Decentralized Private Computations, the core execution engine of the Aleo blockchain… | 91 | 1163 | active |
| Thalhammer/jwt-cpp jwt-cpp is a header-only C++11 library for creating and validating JSON Web Tokens (JWT). It supports all standard signature algorithms (HM… | 67 | 1160 | stable |
| JuneAndGreen/sm-crypto A pure JavaScript implementation of the Chinese national cryptography (Guomi) algorithms SM2 (elliptic curve encryption/signatures), SM3 (h… | 77 | 1159 | active |
| paragonie/halite Halite is a high-level, misuse-resistant cryptography library for PHP built on top of libsodium. It simplifies encryption, decryption, digi… | 55 | 1157 | active |
| soupslurpr/AppVerifier AppVerifier is an Android app that views and verifies app signing certificate hashes to confirm apps are genuine. Users can compare package… | 37 | 1156 | active |
| ElementsProject/elements Elements is an open-source C++ implementation of a blockchain platform extending the Bitcoin protocol with advanced features like Confident… | 88 | 1155 | active |
| Daninet/hash-wasm hash-wasm is a fast hash function library for browsers and Node.js implemented with hand-tuned WebAssembly binaries. It supports a wide ran… | 23 | 1152 | stable |
| orhanobut/hawk Hawk is a secure, simple key-value storage library for Android that encrypts data before persisting it. It supports storing any object type… | 23 | 3996 | maintenance |
| WeBankBlockchain/WeIdentity WeIdentity is a blockchain-based distributed identity solution implementing W3C DID and Verifiable Credential specifications, developed by … | 30 | 1150 | active |
| IJHack/QtPass QtPass is a multi-platform GUI front-end for pass, the standard Unix password manager, built with Qt. It manages GPG-encrypted password sto… | 93 | 1146 | active |
| CosmWasm/cosmwasm CosmWasm is a set of Rust crates providing the standard library for writing WebAssembly smart contracts on Cosmos SDK blockchains. It enabl… | 96 | 1145 | active |
| savoirfairelinux/opendht OpenDHT is a lightweight C++17 distributed hash table (DHT) library providing an easy-to-use distributed in-memory data store with redundan… | 86 | 1143 | active |
| iagox86/dnscat2 dnscat2 is an encrypted DNS tunneling tool designed to create a command-and-control (C&C) channel over the DNS protocol. It consists of a C… | 23 | 3958 | maintenance |
| eclipse-biscuit/biscuit Biscuit is a specification and reference implementation for a delegated, decentralized, capability-based authorization token, written in Ru… | 44 | 1142 | active |