$npx skillfedfor your agent

pure25519

pure-python curve25519/ed25519 routines

SkipPyPI CryptographyReleased Jan 201878.0K downloads / moMITSource build

Decision gist · record as of 2026-08-14

sdist only — pure25519-0.0.1.tar.gz · builds from source
v0.0.1 · released 2018-01-17

No. The package is abandoned, explicitly recommends against its own use in favor of pynacl or python-ed25519, and introduces significant security and performance liabilities (timing side-channels, non-constant-time operations, subgroup checks). Install only for educational study of elliptic-curve math or when no alternative is available and performance/security are not concerns.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • No C compiler required, but performance is substantially slower than C-based alternatives (Ed25519 sign ~2.8ms vs ~142us in pynacl); timing side-channels leak hamming weights.
  • Installation friction is high; the package is abandoned (last commit 2020-02-06, no releases since 2018-01-17) with no runtime dependencies.
  • The description itself recommends using pynacl or python-ed25519 instead, citing performance and security concerns with this pure-Python approach.

License · maintenance · safety

MIT (permissive) — MIT license is permissive and poses no legal restriction on use, modification, or distribution.

last release 2018-01-17 (3131 days) · last repo commit 2020-02-06 · 39 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 78,007 downloads/mo, #14,476 on PyPI

Verify before relying

pip install pure25519

from pure25519 import ed25519_eddsa

# Sign a message
signing_key, verifying_key = ed25519_eddsa.create_signing_key(b'seed')
signature = signing_key.sign(b'message')

# Verify signature
verifying_key.verify(signature, b'message')
  • Whether the package's subgroup-membership checks and non-constant-time implementation are acceptable for your threat model.
  • Current compatibility with modern Python versions beyond 2 and 3 (last release 2018-01-17).
  • Whether the Ed25519 implementation remains compatible with current ed25519.cr.yp.to reference vectors.
Same gist for agents: .md · .json

What it is and what it does

pure25519 is a pure-Python cryptography library implementing Curve25519 and Ed25519 algorithms without requiring a C compiler. It provides Diffie-Hellman key agreement, Ed25519 digital signatures, and SPAKE2 password-authenticated key exchange entirely in Python.

The package is intentionally educational and compiler-free, but the author explicitly warns against production use: it is much slower than C implementations (Ed25519 signing ~2.8ms vs ~142us in pynacl), performs full subgroup-membership checks that add overhead, and is not constant-time—it leaks hamming weights through timing side-channels. The package is abandoned (last commit 2020-02-06) and the description itself recommends using pynacl or python-ed25519 instead for real applications.

Use it for

  • Educational exploration of Curve25519 and Ed25519 algorithms when a C compiler is unavailable.
  • Implementing SPAKE2 password-authenticated key exchange in environments where libsodium bindings are not available.
  • Prototyping or testing cryptographic protocols in pure Python before optimizing with C libraries.
  • Environments where binary dependencies must be minimized, accepting severe performance trade-offs.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

Skip

No.

The package is abandoned, explicitly recommends against its own use in favor of pynacl or python-ed25519, and introduces significant security and performance liabilities (timing side-channels, non-constant-time operations, subgroup checks). Install only for educational study of elliptic-curve math or when no alternative is available and performance/security are not concerns.

Install

pure25519 on PyPI

Before you install

Installation friction is high; the package is abandoned (last commit 2020-02-06, no releases since 2018-01-17) with no runtime dependencies. The description itself recommends using pynacl or python-ed25519 instead, citing performance and security concerns with this pure-Python approach.

No C compiler required, but performance is substantially slower than C-based alternatives (Ed25519 sign ~2.8ms vs ~142us in pynacl); timing side-channels leak hamming weights.

License in practice

MIT license is permissive and poses no legal restriction on use, modification, or distribution.

Quickstart

pip install pure25519

from pure25519 import ed25519_eddsa

# Sign a message
signing_key, verifying_key = ed25519_eddsa.create_signing_key(b'seed')
signature = signing_key.sign(b'message')

# Verify signature
verifying_key.verify(signature, b'message')

Verify before relying

  • Whether the package's subgroup-membership checks and non-constant-time implementation are acceptable for your threat model.
  • Current compatibility with modern Python versions beyond 2 and 3 (last release 2018-01-17).
  • Whether the Ed25519 implementation remains compatible with current ed25519.cr.yp.to reference vectors.

Package facts

LicenseMIT permissive
Python supportNot specified
Install frictionHigh. Source build required
Runtime dependenciesNone
MaintenanceAbandoned 3,131 days since the last release
Last repo commit
First released
Downloads78,007 / month, #14,476 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14

Evidence: pure25519-0.0.1.tar.gz

Tags

Capabilities
curve25519 python implementationed25519 signatures pure pythondiffie-hellman key agreementspake2 password authenticated keyelliptic curve cryptography pythonpure python cryptographyed25519 without c compiler
Topics
educationalabandonedtiming-side-channel

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “ed25519 signatures pure python”

  • pure25519Pure-Python implementation of Curve25519 and Ed25519 cryptographic…
  • ECPyECPy is a pure Python elliptic curve library providing ECDSA, EdDSA…
  • ecdsaPure-Python implementation of ECDSA, EdDSA, and ECDH cryptographic…

Give your agent the search over MCP, or paste the wish link into any chat.

More Cryptography packages

certifi Worth it
PyPI · Cryptography · released Jul 2026

Certifi provides Mozilla's curated collection of root SSL certificates for Python applications to validate TLS hosts and verify certificate trustworthiness.

MPL-2.0pure Python · 3.7+
1.9Bdownloads / mo
cryptography Worth it
PyPI · Cryptography · released Jul 2026

cryptography provides cryptographic recipes and low-level primitives for symmetric encryption, message digests, key derivation, and other common cryptographic algorithms in Python.

Apache-2.0 OR BSD-3-Clausecompiled wheel
1.5Bdownloads / mo
rsa Skip
PyPI · Cryptography · released Apr 2025

Pure-Python RSA encryption, decryption, signing, and key generation following PKCS#1 v1.5, with command-line and library interfaces.

Apache-2.0pure Pythonabandoned
299.6Mdownloads / mo
pyOpenSSL With conditions
PyPI · Python Modules · released Aug 2026

pyOpenSSL wraps OpenSSL's SSL/TLS functionality for Python, providing high-level connection objects and certificate handling through a Python-friendly interface around OpenSSL's cryptographic operations.

Apache-2.0pure Python · 3.9+
294.2Mdownloads / mo
azure-identity Worth it
PyPI · Cryptography · released Mar 2026

Provides Microsoft Entra ID token-based authentication for Azure SDK clients through a set of TokenCredential implementations that handle OAuth flows and managed identity support.

license unclearpure Python · 3.9+
247.2Mdownloads / mo
PyNaCl Worth it
PyPI · Cryptography · released Jan 2026

PyNaCl provides Python bindings to libsodium for digital signatures, secret-key and public-key encryption, hashing, message authentication, and password-based key derivation.

Apache-2.0compiled wheel · 3.8+
246.6Mdownloads / mo

See also diffiehellmanlib · spake2 · x25519 · ECPy · nkeys · eciespy · ecdsa · py-ed25519-zebra-bindings · signedjson · slip10