AES, ChaCha20 and the AEAD Constructions on Top
sgcCrypto_AES covers CBC, GCM and CTR. sgcCrypto_Modes adds ECB, OFB, CFB, ciphertext stealing, AES-CCM and AES Key Wrap. sgcCrypto_ChaCha implements ChaCha20, XChaCha20, Salsa20 and XSalsa20, and sgcCrypto_Poly1305 pairs Poly1305 with them into the RFC 8439 AEAD ciphers. Decryption compares the authentication tag in constant time and refuses to return plaintext when it fails.


