Skip to content

verified: ed25519.t27 states it makes no constant-time claim (Refs #8041) - #8065

Open
gHashTag wants to merge 1 commit into
masterfrom
claude/ed25519-ct-note-8041
Open

gHashTag wants to merge 1 commit into
masterfrom
claude/ed25519-ct-note-8041

Conversation

@gHashTag

@gHashTag gHashTag commented Oct 9, 2026

Copy link
Copy Markdown
Owner

Refs #8041

Comment-only change to specs/tri/crypto/ed25519.t27: the header now says plainly that the spec makes no constant-time claim and nothing checks one (sign and public_key touch the secret seed), and it records the #8041 validation results. Generated Rust is byte-identical (t27c gen-rust output == bootstrap/gen/rust/tri/crypto/ed25519.rs); the seal's spec_hash is refreshed and 16/16 tests pass. Not done here: the receipt threat-model note that the issue also asks for.

🤖 Generated with Claude Code

)

Replaces the one-line constant-time remark with an honest paragraph: no
timing claim is made or checked, sign/public_key touch the secret seed,
and the masked selects are shape, not a guarantee. Records the #8041
Wycheproof and differential-fuzz results. Comment-only change: generated
Rust is byte-identical; seal spec_hash refreshed, 16/16 tests pass.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@github-actions

github-actions Bot commented Oct 9, 2026

Copy link
Copy Markdown
Contributor

PR Dashboard

Generated at: 2026-10-09 08:12:45 UTC

Summary

Status Count
Total Open PRs 50
PRs with Failing Checks 36
PRs with All Checks Green 14
READY 0
FAILING 36
PENDING 0
NO CHECKS YET 0

These columns do not partition: 0 + 36 + 0 + 0 = 36, and there are 50 open PRs. A PR is being counted twice or not at all.

Seal Status

  • ⚠️ STALE -- sha256(compiler.rs)=3c0ade9e73e4 != manifest seal=87e5cbd3ad94.
    The committed NMSE numbers were certified against an older compiler.rs.
    Run scripts/reseal-check.sh locally for the two-step reseal command (advisory; not a merge gate).

This was referenced Oct 9, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant