@dottedice/web-crypto-pki
v1.0.6
Published
Offline-first keypair and X.509 certificate generator using Web Crypto API
Downloads
1,200
Maintainers
Readme
Legal Terms & Disclaimer
This open-source package is distributed strictly for technical education and architectural research purposes. For full warranty disclaimers, export control notices (US EAR / EU Dual-Use), and limitation of liability terms, please review our Open Source Terms & Disclaimer.
@dottedice/web-crypto-pki
Offline-first asymmetric key pair and simulated certificate generator utilizing the native Web Cryptography API. Works seamlessly in both modern web browsers and Node.js environments.
Installation
npm install @dottedice/web-crypto-pkiFeatures
- Zero Dependencies: Uses standard native Web Cryptography APIs under the hood.
- Algorithm Support: Supports standard RSA (
RSASSA-PKCS1-v1_5) and ECDSA (P-256) algorithms. - PEM Exports: Convenient utilities to format cryptographic keys as PEM (
SPKI/PKCS#8) strings. - Simulated Self-Signed Certificates: Locally generates JSON-structured self-signed certificate payloads for development sandboxes and testing (non-ASN.1 DER format).
Usage Example
import { generateKeyPair, exportPEM, generateX509Certificate } from '@dottedice/web-crypto-pki';
// 1. Generate an RSA Keypair
const keyPair = await generateKeyPair('RSA');
// 2. Export Private Key to PEM
const privatePem = await exportPEM(keyPair.privateKey, 'private');
console.log(privatePem);
// 3. Generate a local simulated self-signed certificate payload
const cert = await generateX509Certificate(
{ commonName: 'Vikram Sharma', organization: 'DottedIce Tech' },
keyPair
);
console.log('Certificate Signature:', cert.signature);[!NOTE]
generateX509Certificategenerates a simulated JSON-structured representation of certificate metadata signed with Web Crypto. For standard ASN.1 DER certificates compliant with RFC 5280, use our upcoming@dottedice/x509-asn1-builderpackage.
Publishing to Registry
To publish this package to the npm registry, execute:
npm login