The Tari Labs mandated Quarkslab to perform a cryptographic and
security assessment of the dalek libraries. One of the Tari Labs'
projects is to implement the Tari protocol, a decentralised assets
protocol. It relies on some of the dalek libraries, especially the
cryptographic primitives, provided by subtle and curve25519-dalek. Moreover,
the use of Bulletproofs , and its implementation by the authors
of the dalek libraries, will allow them to enable efficient
confidential transactions on the blockchain in a near future.
We only found some minor issues.
We also provided recommendations on the usage of the
libraries and third-party libraries.
more ...