Modules
OTP :ssl-compatible client facade for the implemented ex_ssl feature subset.
Public, fully materialized ClientHello fields in exact wire order.
Encodes fully materialized ClientHello extensions.
Declares GREASE behavior for a ClientHello wire profile.
Resolves a reusable wire profile into per-connection ClientHello material.
A public ClientHello AST and its separately retained ephemeral key pairs.
Validates wire profiles against explicit engine/runtime capabilities.
Declares record handling for a ClientHello wire profile.
Encodes a fully materialized ClientHello AST as an exact handshake message.
Ordered, declarative configuration for a TLS ClientHello.
Pure TLS 1.3 AEAD encryption and authenticated decryption.
TLS 1.3 Finished verify-data calculation and constant-time verification.
HKDF and TLS 1.3 labeled key derivation.
Fresh ephemeral key generation and shared-secret computation for TLS groups.
Ephemeral key material for one key exchange.
Pure TLS 1.3 key-schedule derivations.
TLS 1.3 CertificateVerify and raw TLS 1.2 handshake signatures.
Pure TLS 1.2 PRF and Extended Master Secret derivation for the bounded ECDHE-GCM subset.
Immutable key material and record sequence state for one TLS traffic epoch.
JA3 and JA4 observation of exact, naked ClientHello handshake bytes.
Pure, bounded certificate decoding, trust normalization, and peer verification.
A bounded X.509 certificate retaining both its exact DER and decoded OTP form.
The authenticated leaf material needed by later handshake verification.
Shared record-free ClientHello and HelloRetryRequest orchestration.
Bounded extraction of negotiation inputs from one exact ClientHello message.
Shared TLS 1.3 authentication and secret derivation over exact handshake bytes.
Frames complete TLS handshake messages from an arbitrarily chunked byte stream.
Pure TLS client coordinator consuming one complete record at a time.
Bounded TLS 1.3 inner plaintext encoding and decoding.
Pure TLS 1.3 encrypted record protection for one complete framed record.
Frames complete TLS records from an arbitrarily chunked byte stream.
Pure TLS 1.3 resumption ticket binder construction over exact ClientHello bytes.
Bounded codecs for the encrypted TLS 1.3 server handshake flight.
TLS record adapter for the shared record-free handshake core.
Exact public handshake inputs and fresh per-connection client key material.
Verified peer and traffic epochs ready for later connection orchestration.
Record-free TLS 1.3 full-certificate server handshake operations.
Pure, bounded decoder for TLS 1.3 ServerHello and HelloRetryRequest messages.
Pure, bounded TLS 1.2 ECDHE/EMS client protocol engine.
Bounded codecs for complete TLS 1.2 handshake messages.
Pure TLS 1.2 AES-GCM record protection for one directional traffic epoch.
Immutable storage and hashing for exact encoded TLS handshake messages.
Caller-owned TLS 1.3 certificate handshake for QUIC CRYPTO streams.
Redacted TLS, QUIC integration, or local API error.
A directional TLS traffic secret. Inspection never reveals its bytes.
Bounded, authenticated TLS 1.3 ticket material retained in memory only.
An opaque handle to one ex_ssl connection. Contains no TLS key material.
Bounded, one-use, in-memory TLS 1.3 ticket cache.