Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

SJCL fills its initial entropy pool with crypto.getRandomValues()


Apologies, I missed that on first glance. I'm not sure why you'd want to run your CSRNG through a bunch of additional functions, at best you're doing nothing, at worst you're reducing the quality of the entropy.


NP. Checking code is a good. It's not the clearest code since the initialization is located separately from the main RNG function. If you actually tried to read the inline minified version of SJCL, I'm sorry but impressed.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: