#aggregation #private #aggregate #computation #scalable #distributed #robust


Implementation of the Prio aggregation system core: https://crypto.stanford.edu/prio/

43 releases

new 0.16.5 May 17, 2024
0.16.3 Apr 25, 2024
0.16.2 Mar 19, 2024
0.15.3 Oct 3, 2023
0.2.0 Oct 1, 2020

#49 in Cryptography

Download history 2090/week @ 2024-01-26 1988/week @ 2024-02-02 1555/week @ 2024-02-09 1830/week @ 2024-02-16 2341/week @ 2024-02-23 1941/week @ 2024-03-01 1991/week @ 2024-03-08 2805/week @ 2024-03-15 2116/week @ 2024-03-22 2529/week @ 2024-03-29 2125/week @ 2024-04-05 1285/week @ 2024-04-12 1472/week @ 2024-04-19 1645/week @ 2024-04-26 2168/week @ 2024-05-03 1485/week @ 2024-05-10

6,868 downloads per month
Used in 8 crates (6 directly)

MPL-2.0 license

17K SLoC


Latest Version Docs badge

Pure Rust implementation of Prio, a system for Private, Robust, and Scalable Computation of Aggregate Statistics.

Exposure Notifications Private Analytics

This crate was used in the Exposure Notifications Private Analytics system. This is referred to in various places as Prio v2. See prio-server or the ENPA whitepaper for more details.

Verifiable Distributed Aggregation Function

This crate also implements a Verifiable Distributed Aggregation Function (VDAF) called "Prio3", implemented in the vdaf module, allowing Prio to be used in the Distributed Aggregation Protocol protocol being developed in the PPM working group at the IETF. This support is still evolving along with the DAP and VDAF specifications.

Draft versions and release branches

The main branch is under continuous development and will usually be partway between VDAF drafts. libprio uses stable release branches to maintain implementations of different VDAF draft versions. Crate prio version x.y.z is released from a corresponding release/x.y branch. We try to maintain Rust SemVer compatibility, meaning that API breaks only happen on minor version increases (e.g., 0.10 to 0.11).

Crate version Git branch VDAF draft version DAP draft version Conforms to specification? Status
0.8 release/0.8 draft-irtf-cfrg-vdaf-01 draft-ietf-ppm-dap-01 Yes Unmaintained as of March 28, 2023
0.9 release/0.9 draft-irtf-cfrg-vdaf-03 draft-ietf-ppm-dap-02 and draft-ietf-ppm-dap-03 Yes Unmaintained as of September 22, 2022
0.10 release/0.10 draft-irtf-cfrg-vdaf-03 draft-ietf-ppm-dap-02 and draft-ietf-ppm-dap-03 Yes Unmaintained as of November 14, 2023
0.11 release/0.11 draft-irtf-cfrg-vdaf-04 N/A Yes Unmaintained
0.12 release/0.12 draft-irtf-cfrg-vdaf-05 draft-ietf-ppm-dap-04 Yes Supported
0.13 release/0.13 draft-irtf-cfrg-vdaf-06 draft-ietf-ppm-dap-05 Yes Unmaintained
0.14 release/0.14 draft-irtf-cfrg-vdaf-06 draft-ietf-ppm-dap-05 Yes Unmaintained
0.15 release/0.15 draft-irtf-cfrg-vdaf-07 draft-ietf-ppm-dap-07 Yes Supported
0.16 main draft-irtf-cfrg-vdaf-08 draft-ietf-ppm-dap-09 Yes Supported

Cargo Features

This crate defines the following feature flags:

Name Default feature? Description Semver stable?
crypto-dependencies Yes Enables dependencies on various RustCrypto crates, and uses them to implement XofTurboShake128 to support VDAFs.
experimental No Certain experimental APIs are guarded by this feature.
multithreaded No Enables certain Prio3 VDAF implementations that use rayon for parallelization of gadget evaluations.
test-util No Enables test utilities for VDAF users and VDAF implementers.
wasm-compat No Enables the getrandom/js feature. This is necessary for wasm32-unknown-unknown targets, when in a JavaScript environment.

Features that are not marked as "Semver stable" may undergo breaking changes in future patch releases, as an exception to semantic versioning.


~92K SLoC