3 ms·
> Does the compiler guarantee constant time? If not, it's still useless for cryptography. Side-channel resistant algorithms are only required when you are hand
by remcob 6y ago
> Does the compiler guarantee constant time? If not, it's still useless for cryptography.
Side-channel resistant algorithms are only required when you are handling sensitive data. This is often not the case when you are verifying signatures, verifying proofs or generating succinct proofs of computation without a zero-knowledge requirement.