#bitcoin #crypto #ecc #secp256k1

no-std secp256kfun_k256_backend

backend for secp256kfun based on k256

4 releases (stable)

2.0.1 Sep 5, 2022
2.0.0 Jan 12, 2022
1.0.0 Nov 11, 2021
0.9.6 Nov 10, 2021

#2177 in Magic Beans

Download history 143/week @ 2023-08-14 30/week @ 2023-08-21 12/week @ 2023-08-28 50/week @ 2023-09-04 60/week @ 2023-09-11 12/week @ 2023-09-18 15/week @ 2023-09-25 10/week @ 2023-10-02 11/week @ 2023-10-09 15/week @ 2023-10-16 14/week @ 2023-10-23 23/week @ 2023-10-30 17/week @ 2023-11-06 18/week @ 2023-11-13 18/week @ 2023-11-20 28/week @ 2023-11-27

84 downloads per month

Apache-2.0 OR MIT


RustCrypto: secp256k1 (K-256) elliptic curve

crate Docs Apache2/MIT licensed Rust Version Project Chat Build Status

secp256k1 (a.k.a. K-256) elliptic curve library written in pure Rust with support for ECDSA signing/verification (including Ethereum-style signatures with public-key recovery), Elliptic Curve Diffie-Hellman (ECDH), and general purpose arithmetic which can be used to implement arbitrary protocols.

Uses traits and base types from the elliptic-curve crate.

Optionally includes a secp256k1 arithmetic feature providing scalar and point types (projective/affine) with support for constant-time scalar multiplication. Additionally, implements traits from the group crate which can be used to generically construct group-based protocols.


⚠️ Security Warning

The secp256k1 elliptic curve arithmetic contained in this crate has never been independently audited!

This crate has been designed with the goal of ensuring that secret-dependent secp256k1 operations are performed in constant time (using the subtle crate and constant-time formulas). However, it has not been thoroughly assessed to ensure that generated assembly is constant time on common CPU architectures.


Supported Algorithms

About secp256k1 (K-256)

secp256k1 is a Koblitz curve commonly used in cryptocurrency applications. The "K-256" name follows NIST notation where P = prime fields, B = binary fields, and K = Koblitz curves.

The curve is specified as secp256k1 by Certicom's SECG in "SEC 2: Recommended Elliptic Curve Domain Parameters":


secp256k1 is primarily notable for usage in Bitcoin and other cryptocurrencies, particularly in conjunction with the Elliptic Curve Digital Signature Algorithm (ECDSA). Owing to its wide deployment in these applications, secp256k1 is one of the most popular and commonly used elliptic curves.

Minimum Supported Rust Version

Rust 1.51 or higher.

Minimum supported Rust version can be changed in the future, but it will be done with a minor version bump.

SemVer Policy

  • All on-by-default features of this library are covered by SemVer
  • MSRV is considered exempt from SemVer as noted above


All crates licensed under either of

at your option.


Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed as above, without any additional terms or conditions.