Invitation for external cryptographic review #34
rossbuckley1990-hash
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Call for cryptographic review
The Actenon Kernel has not yet received an external cryptographic review. We are inviting security researchers to review the crypto surface.
What needs review
The following surfaces handle cryptographic correctness:
ACTENON-JCS-STRICT-1(RFC 8785 subset with float rejection, duplicate-key rejection, depth/size limits)How to start
docs/CRYPTO_REVIEW.mdfor exact file pointers and specific reviewer questions for each surface.SECURITY.mdfor the reporting policy.docs/AUDIT_RESPONSES.mdfor the self-review already done.ross.buckley1990@gmail.comwith subject[ACTENON SECURITY].What we have done so far
What we have NOT done
We welcome external review and will publish findings (with credit, anonymised if preferred) in
docs/CRYPTO_REVIEW.md.All reactions