Ross ROSS = Recommend OSS · open-source software intelligence for agents

Tongsuo-Project/Tongsuo

铜锁/Tongsuo is a Modern Cryptographic Primitives and Protocols Library observed · 2026-08-28

github.com/Tongsuo-Project/Tongsuo · homepage · C · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

84/100

  • Activity 95
  • Release rhythm 60
  • Longevity 100

Flags: prerelease_only

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 132
  • age_days: 2199
  • days_rel: 30
  • days_push: 31
  • n_releases_24m: 2

Full methodology

Adoption not part of the score

1521 stars · 261 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Tongsuo (铜锁) is an open-source cryptographic library providing modern cryptographic primitives and secure communication protocols, including Chinese commercial cryptography algorithms (SM2/SM3/SM4/ZUC), TLS 1.3, the TLCP dual-certificate protocol, post-quantum algorithms, zero-knowledge proofs, and homomorphic encryption. It is an OpenSSL-derived C library certified for Chinese commercial cryptography compliance, usable across Linux, macOS, Windows, Android, and iOS.

Use cases

  • add SM2/SM3/SM4 Chinese national cryptography support to my application
  • serve TLS with dual-certificate GM (TLCP) protocol
  • enable RFC 8998 TLS 1.3 with Chinese cipher suites
  • meet Chinese commercial cryptography compliance requirements (密评/等保)
  • use post-quantum algorithms like ML-KEM and ML-DSA
  • implement zero-knowledge proofs with Bulletproofs
  • use homomorphic encryption like Paillier or EC-ElGamal
  • replace OpenSSL with a China-compliant crypto library

When to choose

  • you need Chinese national cryptography (国密) algorithm or TLCP protocol support
  • you must satisfy Chinese commercial cryptography compliance and certification requirements
  • you want an OpenSSL-compatible API with modern additions like ZKP, homomorphic encryption, and post-quantum crypto
  • you need TLS 1.3 with RFC 8998 Chinese cipher suites or QUIC API support

When to avoid

  • you only need standard international cryptography with no Chinese compliance needs — OpenSSL, BoringSSL, or rustls may be simpler
  • you need a minimal footprint for embedded/IoT devices — consider the companion tongsuo-mini instead
  • your stack requires language bindings or ecosystems not yet built around Tongsuo

Facets

library · maturity active

cryptography security networking sdk security privacy developer-tools cross-platform windows cross-platform c chinese-commercial-cryptography sm2 sm3 sm4 tlcp gm-tls tls quic post-quantum zero-knowledge-proof homomorphic-encryption openssl-fork compliance linux macos android ios

8 sources

Member repositories

RepositoryRoleHealth v2
Tongsuo-Project/Tongsuomain84

For agents

markdown · JSON · MCP: product_card(name="Tongsuo-Project/Tongsuo")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem