blob: 58424bfc048d79282d95d6003324460e5add34a3 [file] [log] [blame]
Alex Gaynor1abfac72013-08-07 12:59:04 -07001Welcome to ``cryptography``
2===========================
3
Alex Gaynor66ba6012013-10-28 10:11:21 -07004``cryptography`` is a Python library which exposes cryptographic recipes and
Alex Gaynor872cd972014-02-10 18:52:47 -08005primitives. Our goal is for it to be your "cryptographic standard library".
Alex Gaynor31df5352013-12-12 18:03:26 -08006
skeuomorfb0293bf2014-01-29 21:41:02 +02007Installation
8------------
9You can install ``cryptography`` with ``pip``:
10
11.. code-block:: console
12
13 $ pip install cryptography
14
Paul Kehrerf3b57e32014-01-29 14:45:10 -060015See :doc:`Installation <installation>` for more information.
skeuomorfb0293bf2014-01-29 21:41:02 +020016
Alex Gaynor9f3468d2013-08-11 08:17:48 -040017Why a new crypto library for Python?
18------------------------------------
19
Alex Gaynor31df5352013-12-12 18:03:26 -080020If you've done cryptographic work in Python before, you've probably seen some
21other libraries in Python, such as *M2Crypto*, *PyCrypto*, or *PyOpenSSL*. In
22building ``cryptography`` we wanted to address a few issues we observed in the
23existing libraries:
Alex Gaynor9f3468d2013-08-11 08:17:48 -040024
Alex Gaynord8d91d42013-08-12 09:33:18 -040025* Lack of PyPy and Python 3 support.
Alex Gaynord6bef562013-08-11 09:09:28 -040026* Lack of maintenance.
Alex Gaynorec4ba732013-08-11 08:19:05 -040027* Use of poor implementations of algorithms (i.e. ones with known side-channel
Alex Gaynord6bef562013-08-11 09:09:28 -040028 attacks).
29* Lack of high level, "Cryptography for humans", APIs.
Alex Gaynor7ba13922014-02-03 15:00:48 -080030* Absence of algorithms such as
31 :class:`AES-GCM <cryptography.hazmat.primitives.ciphers.modes.GCM>` and
32 :class:`~cryptography.hazmat.primitives.kdf.hkdf.HKDF`.
Alex Gaynord6bef562013-08-11 09:09:28 -040033* Poor introspectability, and thus poor testability.
Alex Gaynorf0d139a2013-08-11 09:13:27 -040034* Extremely error prone APIs, and bad defaults.
Alex Gaynor9f3468d2013-08-11 08:17:48 -040035
Alex Gaynor59a6bc62014-02-18 18:13:48 -080036
37.. _cryptography-layout:
38
Alex Gaynor7c067462013-12-16 10:11:00 -080039Layout
40------
Alex Gaynor9f3468d2013-08-11 08:17:48 -040041
Alex Gaynor7c067462013-12-16 10:11:00 -080042``cryptography`` is broadly divided into two levels. One with safe
43cryptographic recipes, "cryptography for humans" if you will. These are safe
44and easy to use and don't require developers to make many decisions.
45
46The other level is low-level cryptographic primitives. These are often
47dangerous and can be used incorrectly. They require making decisions and having
48an in-depth knowledge of the cryptographic concepts at work. Because of the
Alex Gaynordf8bfea2013-12-16 10:17:48 -080049potential danger in working at this level, this is referred to as the
Alex Gaynor77762bc2014-01-01 07:53:48 -080050"hazardous materials" or "hazmat" layer. These live in the
Alex Gaynord8614a22014-01-01 08:22:40 -080051``cryptography.hazmat`` package, and their documentation will always contain an
Alex Gaynor77762bc2014-01-01 07:53:48 -080052admonition at the top.
Alex Gaynor7c067462013-12-16 10:11:00 -080053
54We recommend using the recipes layer whenever possible, and falling back to the
55hazmat layer only when necessary.
56
57The recipes layer
58~~~~~~~~~~~~~~~~~
Alex Gaynorc62e91f2013-08-06 19:25:52 -070059
60.. toctree::
Alex Gaynor1abfac72013-08-07 12:59:04 -070061 :maxdepth: 2
62
Alex Gaynor333fb102013-10-31 10:27:35 -070063 fernet
Alex Gaynor2a70f912014-02-06 09:47:07 -080064 random-numbers
Alex Gaynorf1a3fc02013-11-02 14:03:34 -070065 exceptions
Alex Gaynorde06b292014-02-18 16:40:09 -080066 faq
Alex Gaynor8c9dcb32013-11-03 13:10:57 -080067 glossary
Donald Stufftf04317a2013-10-27 16:44:30 -040068
Alex Gaynor2cfbc122013-12-16 10:19:00 -080069The hazardous materials layer
70~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Donald Stufftf04317a2013-10-27 16:44:30 -040071
72.. toctree::
73 :maxdepth: 2
74
75 hazmat/primitives/index
Alex Gaynorf8796b12013-12-13 20:28:55 -080076 hazmat/backends/index
Alex Stapletonc368ac22013-12-31 13:43:38 +000077 hazmat/bindings/index
Alex Gaynor7c067462013-12-16 10:11:00 -080078
Alex Gaynor7c067462013-12-16 10:11:00 -080079The ``cryptography`` open source project
80~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
81
82.. toctree::
83 :maxdepth: 2
84
skeuomorfb0293bf2014-01-29 21:41:02 +020085 installation
Paul Kehrer0839aa82014-02-11 22:36:51 -060086 development/index
Alex Gaynor7c067462013-12-16 10:11:00 -080087 security
Alex Stapleton68bba2d2014-03-22 23:03:15 +000088 limitations
Alex Gaynor1a9bbf22013-12-24 10:59:50 -080089 api-stability
Alex Gaynor89063f62014-01-06 15:52:38 -080090 doing-a-release
Alex Gaynor3f230402014-01-08 09:21:57 -080091 changelog
Alex Gaynor7c067462013-12-16 10:11:00 -080092 community
Alex Gaynora8fc6f32014-01-23 10:48:16 -060093
94
Alex Gaynor92ddd762014-03-03 19:39:40 -080095.. note::
96
97 ``cryptography`` has not been subjected to an external audit of its code or
98 documentation. If you're interested in discussing an audit please
Alex Gaynor0df8c972014-03-03 19:43:50 -080099 :doc:`get in touch </community>`.
Alex Gaynor92ddd762014-03-03 19:39:40 -0800100
Alex Gaynore7651de2014-01-23 11:34:35 -0600101.. _`pre-compiled binaries`: https://www.openssl.org/related/binaries.html