New Research: Supply Chain Attack on Axios Pulls Malicious Dependency from npm.Details →
Socket
Book a DemoSign in
Socket

spake2

Package Overview
Dependencies
Maintainers
2
Versions
3
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

spake2

A Javascript package for SPAKE2 and SPAKE2+

latest
Source
npmnpm
Version
1.0.2
Version published
Maintainers
2
Created
Source

spake2-js

The SPAKE2 password-authenticated key-exchange algorithm, in Javascript.

This implementation focus on following draft-irtf-cfrg-spake2-08 with SPAKE2, SPAKE2+ and key confirmation.

This have not go through a formal cryptographic audit and should be awared in any use case.

Also this do not protect against time attacks as operations are probably not constant-time.

FAQs

Package last updated on 12 Sep 2019

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts