Secure memory handling primitives for Rust — zeroization on drop, mlock-protected regions, constant-time comparison, and compile-time enforced memory safety boundaries
-
Updated
Jul 22, 2026 - Rust
Secure memory handling primitives for Rust — zeroization on drop, mlock-protected regions, constant-time comparison, and compile-time enforced memory safety boundaries
Marrow is an experimental, zero-trust desktop messenger designed for high-performance and future-proof privacy. Powered by Rust, Tauri v2, and Preact, it combines hybrid post-quantum cryptography (ML-KEM-768 + X25519) with Double Ratchet E2EE and libp2p networking.
Secrets that live only as long as you do — a session-bound, memory-zeroizing dead-man's-switch. Locks secrets in non-swappable RAM and wipes + SIGKILLs the instant your session dies. Hardened Rust, seccomp-confined, with an MCP adapter for agents.
A portable, cross-platform encrypted container. Secure workspace with zero-trace memory management.
Secure, pooled buffers with aggressive memory management
LAN security with physical QR verification + cryptographic defense-in-depth. Rust implementation of 7-layer defense architecture. 局域网安全方案:物理二维码验证 + 密码学纵深防御,Rust七层防御架构实现。
A dependency-free, no_std Rust crate for secure in-memory secret handling, constant-time checks, and automated clear-on-drop zeroization.
Best-effort secret memory zeroing, constant-time operations, and secure containers for pure Dart.
Post-quantum-oriented file encryption CLI in pure Rust — AES-256-GCM + HKDF-SHA256, Argon2id passphrases, symmetric-only by design 🔒
Multi-password, order-sensitive folder encryption CLI. Think Rubik’s Cube meets combination lock. Every password turns the cube. Only the exact twist sequence lands on the solving state that opens the box.
Deterministic cryptographic signing model based on episodes, audit consistency, Shamir reconstruction and secure zeroize. Phase I–III implementation with full documentation and deterministic test suite.
Zero-overhead anti-forensic memory sanitizer and 3-pass cryptographic buffer shredder for C++ and Python
Sovereign, local-first spatial memory engine in Rust. Combines client-side AEAD encryption and volatile RAM zeroization (Blackhole), constant-size recursive zk-SNARK consensus (Whitehole), and on-demand first-person waking dream reliving (Wormhole). AGPLv3.
krypto — secret handling library
Run a command with secrets fetched just-in-time, injected leak-tight, and gone on exit — plus a safe, scoped direnv. Rust.
Userspace WireGuard® Implementation in Rust
To associate your repository with the zeroize topic, visit your repo's landing page and select "manage topics."