Plugins

Plugin marketplace

Confium plugins provide cryptographic algorithms via the cfmp_* contract. Install with one command; verify signatures automatically. The registry is open — anyone can publish.


Available now

Published plugins

Browse source →

botan

v3.2.0 FIPS-capable

Botan crypto provider plugin — FIPS-capable backend providing SHA-256, AES-GCM, Ed25519, ECDSA, and more.

Interfaces

hashcipheraeadsignaturekem

Algorithms

SHA-256SHA-384SHA-512AES-256-GCMChaCha20-Poly1305Ed25519ECDSA-P256ECDSA-P384

Signed by Ribose Open (ribose)

Install

{p.installCommand}

In development

Upcoming plugins

These plugins are in development. Watch the repos or contribute via PR.

openssl

OpenSSL crypto provider plugin — wraps libcrypto for hash, cipher, AEAD, and signature operations.

ring

Ring crypto provider — high-performance Rust crypto for hash, AEAD, and signature operations.

frost-ed25519

FROST threshold signature protocol implementation for Ed25519.

frost-p256

FROST threshold signature protocol implementation for P-256 / ECDSA.

cmp20

CMP20 threshold ECDSA protocol implementation.

ml-dsa-65

ML-DSA-65 (FIPS 204) post-quantum signature algorithm.

sm2-sm3

Chinese national standard SM2/SM3 cryptographic algorithms.

For plugin authors

Publish your own plugin

The Confium registry is open. Write a plugin in any language that produces a cdylib, wrap it with confium-publish, sign the manifest with your PGP key, and submit a PR against the registry.

Trust

Signed manifests

Every plugin manifest is PGP-signed by the publisher. The CLI verifies the signature against the trusted-publisher list before install.

Verify

SHA-256 attestation

The manifest records the SHA-256 of the binary artifact. The CLI re-computes and compares after download.

Audit

Transparent registry

The registry is a git repository. Every addition, update, and takedown is a PR visible to the public.