Install
npm install @cryptolize/core --save
Usage
ES6 (Javascript Modules)
import * as CryptolizeCore from '@cryptolize/core'
const keys = CryptolizeCore.createAsymmetricKeys()
...
import { encryptRecordAsync } from '@cryptolize/core'
encryptRecordAsync(...).then((record) => console.log(record))
ES5 (CommonJS)
var CryptolizeCore = require('@cryptolize/core')
var keys = CryptolizeCore.createAsymmetricKeys()
CryptolizeCore.encryptRecordAsync(...).then((record) => console.log(record))
UMD (Browser)
var keys = CryptolizeCore.createAsymmetricKeys()
CryptolizeCore.encryptRecordAsync(...).then((record) => console.log(record))
Record Format
Record
Record
Type: Object
Parameters
headerWrapper
headerWrapperEncryptionParams
blocks
Properties
Examples
const record = {
headerWrapper: {
metadata: {
type: 'standard',
id: 'id',
creator: 'creator',
personalPage: 'personalPage',
signature: 'signature',
signatureKeyVersion: 'signatureKeyVersion',
timestamp: 1488992366155,
timezoneOffset: 120,
isOnce: false,
expiration: 1488992300000,
subject: 'subject',
origin: 'origin',
custom: {
key1: value1,
key2: value2,
...
}
},
blocks: [
{
symmetricEncryption: [
{
hint: 'hint',
derivationParams: {
iterations: 'iterations',
salt: 'salt'
},
encryptionParams: {
iv: 'iv',
mode: 'gcm',
ts: 128,
adata: 'cryptolize'
},
encryptedKey: 'encryptedKey'
},
...
],
asymmetricEncryption: [
{
id: 'id',
version: 'version',
tag: 'tag',
encryptionParams: {
iv: 'iv',
mode: 'gcm',
ts: 128,
adata: 'cryptolize'
},
encryptedKey: 'encryptedKey'
},
...
],
dataEncryptionParams: {
iv: 'iv',
mode: 'gcm',
ts: 128,
adata: 'cryptolize'
},
filesEncryptionParams: [
{
id: 'id',
encryptionParams: {
iv: 'iv',
mode: 'gcm',
ts: 128,
adata: 'cryptolize'
}
},
...
],
filesStorageParams: [
{
id: 'id',
path: 'path',
service: 'service'
},
...
]
}
...
]
},
headerWrapperEncryptionParams: {
id: 'id',
tag: 'tag',
encryptionParams: {
iv: 'iv',
mode: 'gcm',
ts: 128,
adata: 'cryptolize'
},
},
blocks: [
{
data: {
text: 'text',
files: [
{
name: 'name',
size: 'size',
type: 'type',
id: 'id'
},
...
]
},
files: [
{
id: 'id',
data: 'data'
},
...
]
},
...
]
}
Header wrapper
Type: Object
Parameters
Properties
RecordMetadata
RecordMetadata
Type: Object
Parameters
id
creator
personalPage
signature
signatureKeyVersion
timestamp
timezoneOffset
isOnce
expiration
subject
origin
custom
Properties
Header wrapper encryption params
Type: Object
Parameters
Properties
Block
Block
Type: Object
Parameters
Properties
Header
Type: Object
Parameters
symmetricEncryption
asymmetricEncryption
dataEncryptionParams
filesEncryptionParams
filesStorageParams
Properties
SymmetricEncryptionWrapper
Symmetric encryption wrapper
Type: Object
Parameters
hint
derivationParams
encryptionParams
encryptedKey
Properties
AsymmetricEncryptionWrapper
Asymmetric encryption wrapper
Type: Object
Parameters
id
version
tag
encryptionParams
encryptedKey
Properties
FilesEncryptionParams
Files encryption params
Type: Object
Parameters
Properties
FilesStorageParams
Files storage params
Type: Object
Parameters
Properties
Data
Data
Type: Object
Parameters
Properties
FileMetadata
File metadata
Type: Object
Parameters
Properties
EncryptedFile
Encrypted file
Type: Object
Parameters
Properties
SymmetricEncryptionParams
Symmetric encryption params
Type: Object
Parameters
Properties
DerivationParams
Derivation params
Type: Object
Parameters
Properties
iterations
Numbersalt
Base64UrlString
API
Sync
deriveKey
Derives encryption key from simple text
Parameters
Returns Base64UrlString
createRandom
Create random string
Parameters
-
bits
Number number of bits [64, 128, 256]
-
Throws Error if a generator isn't seeded
Returns Base64UrlString
createKey
Create encryption key of size 256 bits
- Throws Error if a generator isn't seeded
Returns Base64UrlString
createIV
Create initialization vector of size 128 bits
- Throws Error if a generator isn't seeded
Returns Base64UrlString
createAsymmetricKeys
Create ECC (P-521 NIST curve) public and private keys
Parameters
privateKey
ElGamalPrivateKey? create the keys from specific private key
Examples
const keys = CryptolizeCore.createAsymmetricKeys()
console.log(keys.public)
console.log(keys.private)
- Throws Error if a parameter is invalid or generator isn't seeded
Returns {public: ElGamalPublicKey, private: PrivateKey}
createAsymmetricKeysECDSA
Create ECC (P-521 NIST curve) public and private keys for ECDSA
Parameters
privateKey
ECDSAPrivateKey? create the keys from specific private key
Examples
const keys = CryptolizeCore.createAsymmetricKeysECDSA()
console.log(keys.public)
console.log(keys.private)
- Throws Error if a parameter is invalid or generator isn't seeded
Returns {public: PublicKey, private: PrivateKey}
signWithECDSAPrivateKey
Sign text with ECDSA private key
Parameters
privateKey
ECDSAPrivateKey the key to sign withtext
String the text to sign
Examples
const keys = CryptolizeCore.createAsymmetricKeysECDSA()
const signature = CryptolizeCore.signWithECDSAPrivateKey(keys.private, 'text to sign')
Returns Base64UrlString
verifyWithECDSAPublicKey
Verify text with ECDSA public key
Parameters
publicKey
ECDSAPublicKey the key to verify withtext
String the text to verifysignature
Base64UrlString the signature to verify with
Examples
const keys = CryptolizeCore.createAsymmetricKeysECDSA()
const signature = CryptolizeCore.signWithECDSAPrivateKey(keys.private, 'text to sign')
const isOk = CryptolizeCore.verifyWithECDSAPublicKey(keys.public, 'text to sign', signature)
Returns Boolean
createRecordMetadata
Create record metadata
Parameters
Returns RecordMetadata
createEncryptionParams
Create encryption params
Parameters
Returns SymmetricEncryptionParams
encryptText
Encrypt text
Parameters
Returns Base64UrlString the encrypted data
encryptObject
Encrypt object
Parameters
Returns Base64UrlString the encrypted data
encryptKey
Encrypt key
Parameters
Returns Base64UrlString the encrypted data
decryptText
Decrypt text
Parameters
Returns String the decrypted data
decryptObject
Decrypt object
Parameters
Returns Object the decrypted data
decryptFile
Decrypt file
Parameters
data
ArrayBufferdecryptionKey
Base64UrlStringdecryptionParams
SymmetricEncryptionParams
Examples
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., keys.public, ..., [{ password, hint }], ...)
const header = CryptolizeCore.decryptRecord(record, keys.private)[0]
const key = CryptolizeCore.decryptKeyWithSymmetricEncryption(password, header)
const file = CryptolizeCore.decryptFile(record.blocks[0].files[0].data, key, header.filesEncryptionParams[0].encryptionParams)
console.log(file)
- Throws Error if a parameter is invalid, data is corrupt or wrong key
Returns ArrayBuffer
decryptKey
Decrypt key
Parameters
Returns Base64UrlString the decrypted data
encryptRecord
Encrypt record
Parameters
headerKey
ElGamalPublicKey public key for header encryptionmetadata
RecordMetadatablocks
{text: String, files: Array<{name: String, size: Number, type: String, id: String, path: String, service: String, data: ArrayBuffer}>, passwords: Array<{password: String, hint: String, iterations: Number}>, publicKeys: Array<{id: String, version: String, key: ElGamalPublicKey}>}
Examples
const headerKey = CryptolizeCore.createAsymmetricKeys().public
const metadata = CryptolizeCore.createRecordMetadata(
'id',
'creator',
'personalPage',
'signature',
'signatureKeyVersion',
new Date().getTime(),
new Date().getTimezoneOffset(),
false,
new Date().getTime(),
'subject',
'origin',
{
key1: 'value1',
key2: 'value2'
}
)
const password = { password: 'password', hint: 'hint', iterations: 100000 }
const publicKey = { id: 'publicKeyOwnerId', version: CryptolizeCore.createAsymmetricKeys().public, key: CryptolizeCore.createAsymmetricKeys().public }
const text = 'text'
const file = {
name: 'name',
size: 1024,
type: 'type',
id: 'id',
path: 'path',
service: 'service',
data: 'ArrayBuffer'
}
const block = { passwords: [password], publicKeys: [publicKey], text: 'text', files: [file] }
const record = CryptolizeCore.encryptRecord(headerKey, metadata, [block])
console.log(record)
- Throws Error if a parameter is invalid
Returns Record the encrypted record
decryptRecord
Decrypt record
Parameters
record
RecordheaderKey
ElGamalPrivateKey
Examples
const keys = CryptolizeCore.createAsymmetricKeys()
const record = CryptolizeCore.encryptRecord(..., keys.public, ...)
const headerWrapper = CryptolizeCore.decryptRecord(record, keys.private)
console.log(headerWrapper)
- Throws Error if a parameter is invalid, data is corrupt or wrong key
Returns HeaderWrapper header wrapper
decryptKeyWithSymmetricEncryption
Decrypt key with symmetric encryption
Parameters
password
Stringheader
Header
header.symmetricEncryption
Examples
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., keys.public, ..., [{ password, hint }], ...)
const headers = CryptolizeCore.decryptRecord(record, keys.private)
const key = CryptolizeCore.decryptKeyWithSymmetricEncryption(password, header[0])
console.log(key)
- Throws Error if the symmetricEncryption array is empty, data is corrupt or wrong password
Returns Base64UrlString encrypted key
decryptKeyWithAsymmetricEncryption
Decrypt key with asymmetric encryption
Parameters
id
Stringversion
StringprivateKey
ElGamalPrivateKeyheader
Header
header.asymmetricEncryption
Examples
const headerKeys = CryptolizeCore.createAsymmetricKeys()
const id = 'id'
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., headerKeys.public, ..., [{ id: id, version: keys.public, key: keys.public }], ...)
const headers = CryptolizeCore.decryptRecord(record, headerKeys.private)
const key = CryptolizeCore.decryptKeyWithAsymmetricEncryption(id, keys.public, keys.private, header[0])
console.log(key)
- Throws Error if the asymmetricEncryption array is empty, data is corrupt or wrong keyId
Returns Base64UrlString encrypted key
hasSymmetricEncryption
returns true if symmetric encryption exists, false otherwise
Parameters
header
Header
header.symmetricEncryption
Examples
const headerKeys = CryptolizeCore.createAsymmetricKeys()
const id = 'id'
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., headerKeys.public, ..., [{ id: id, version: keys.public, key: keys.public }], ...)
const headers = CryptolizeCore.decryptRecord(record, headerKeys.private)
const hasSymmetricEncryption = CryptolizeCore.hasSymmetricEncryption(header[0])
console.log(hasSymmetricEncryption)
Returns Boolean
hasAsymmetricEncryption
returns true if asymmetric encryption with supplied id exists, false otherwise
Parameters
Examples
const headerKeys = CryptolizeCore.createAsymmetricKeys()
const id = 'id'
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., headerKeys.public, ..., [{ id: id, version: keys.public, key: keys.public }], ...)
const headers = CryptolizeCore.decryptRecord(record, headerKeys.private)
const hasAsymmetricEncryption = CryptolizeCore.hasAsymmetricEncryption(id, header[0])
console.log(hasAsymmetricEncryption)
Returns Boolean
getAsymmetricEncryptionParams
returns asymmetric encryption params of the supplied id
Parameters
id
Stringheader
Header
header.asymmetricEncryption
Examples
const headerKeys = CryptolizeCore.createAsymmetricKeys()
const id = 'id'
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., headerKeys.public, ..., [{ id: id, version: keys.public, key: keys.public }], ...)
const headers = CryptolizeCore.decryptRecord(record, headerKeys.private)
const asymmetricEncryptionParams = CryptolizeCore.getAsymmetricEncryptionParams(id, header[0])
console.log(asymmetricEncryptionParams)
Returns (AsymmetricEncryptionWrapper | undefined)
decryptData
Decrypt data
Parameters
data
Base64UrlStringdecryptionKey
Base64UrlStringdecryptionParams
SymmetricEncryptionParams
Examples
const keys = CryptolizeCore.createAsymmetricKeys()
const password = 'password'
const hint = 'hint'
const record = CryptolizeCore.encryptRecord(..., keys.public, ..., [{ password, hint }], ...)
const header = CryptolizeCore.decryptRecord(record, keys.private)[0]
const key = CryptolizeCore.decryptKeyWithSymmetricEncryption(password, header)
const data = CryptolizeCore.decryptData(record.blocks[0].data, key, header.dataEncryptionParams)
console.log(data)
- Throws Error if a parameter is invalid, data is corrupt or wrong key
Returns Data decrypted data
Async
Same as the sync API (except the createRecordMetadata
and createEncryptionParams
functions) but with Async
suffix (encryptRecord
-> encryptRecordAsync
) and the functions return Promise
Can be used in browser environment only
Development
- make sure node installed - install nvm if not
git clone git@bitbucket.org:witalize/cryptolize-core.git
cd cryptolize-core
npm install
- lint code -
npm run lint
- run tests -
npm test
- run benchmarks -
npm run benchmark
- build from src -
npm run build
- update README -
npm run docs
- publish to npm (runs automatically tests, lint and build before) -
npm publish