A TypeScript library for OPAQUE Asymmetric Password-Authenticated Key Exchange Protocol
-
Updated
Apr 24, 2026 - TypeScript
A TypeScript library for OPAQUE Asymmetric Password-Authenticated Key Exchange Protocol
Turn any webpage into an inspectable Electrobun desktop app with one command.
Address to desktop app under 20 seconds.
Modern secure remote password library for Bun clients and servers
Connect the dots of your daily life with a cross-platform hub designed to keep you focused, organized, and moving forward.
OPAQUE (RFC 9807) client library for TypeScript — pure JS, WebCrypto, zero WASM
Zero-knowledge password manager — cross-platform web + mobile, TypeScript monorepo. Early prototype.
Browser-based SPAKE2/SPAKE2+ demo — RFC 9382/9383. Same handshake, same session key — the difference appears when the server leaks. SPAKE2 stored the password: the attacker is now the client. SPAKE2+ stored a verifier: the attacker gets an offline dictionary attack. Real M/N masking over P-256. No backends. No simulated math.
Browser-based OPAQUE aPAKE demo (RFC 9807, July 2025) — OPRF blind/evaluate/unblind, AES-256-GCM credential envelope, 3DH mutual authentication, server breach simulation. The password never touches the server. No backends. No simulated math.
Browser-based tour of the PAKE family — SRP-6a, J-PAKE, CPace, and Dragonfly (RFC 7664) side by side. Watch a shared key form from a low-entropy password that never crosses the wire, toggle a server breach, and replay the Dragonblood side-channel that broke WPA3's hunting-and-pecking.
Add a description, image, and links to the pake topic page so that developers can more easily learn about it.
To associate your repository with the pake topic, visit your repo's landing page and select "manage topics."