#elliptic-curve #ecc

no-std primeorder

Pure Rust implementation of complete addition formulas for prime order elliptic curves (Renes-Costello-Batina 2015). Generic over field elements and curve equation coefficients

23 releases

Uses new Rust 2024

new 0.14.0-rc.2 Dec 30, 2025
0.14.0-rc.1 Nov 25, 2025
0.14.0-rc.0 Oct 23, 2025
0.14.0-pre.7 Jul 10, 2025
0.0.0 Jun 30, 2022

#2548 in Cryptography

Download history 730817/week @ 2025-09-02 686766/week @ 2025-09-09 650843/week @ 2025-09-16 696899/week @ 2025-09-23 753223/week @ 2025-09-30 697229/week @ 2025-10-07 727715/week @ 2025-10-14 727850/week @ 2025-10-21 795140/week @ 2025-10-28 842070/week @ 2025-11-04 806566/week @ 2025-11-11 887360/week @ 2025-11-18 701757/week @ 2025-11-25 844502/week @ 2025-12-02 837950/week @ 2025-12-09 5975/week @ 2025-12-16

2,531,788 downloads per month
Used in 1,261 crates (15 directly)

Apache-2.0 OR MIT

72KB
2K SLoC

RustCrypto: Prime Order Elliptic Curve Formulas

crate Docs Build Status Apache2/MIT licensed Rust Version Project Chat

Pure Rust implementation of complete addition formulas for prime order elliptic curves (Renes-Costello-Batina 2015). Generic over field elements and curve equation coefficients.

Documentation

About

This crate provides a generic implementation of complete formulas for prime order elliptic curves which are defined by the short Weierstrass equation:

y² = x³ + ax + b

It's used to implement the following elliptic curves:

⚠️ Security Warning

The elliptic curve arithmetic contained in this crate has never been independently audited!

This crate has been designed with the goal of ensuring that secret-dependent operations are performed in constant time (using the subtle crate and constant-time formulas). However, it has not been thoroughly assessed to ensure that generated assembly is constant time on common CPU architectures.

USE AT YOUR OWN RISK!

License

All crates licensed under either of:

at your option.

Contribution

Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed as above, without any additional terms or conditions.

Dependencies

~3MB
~72K SLoC