Stdlib module crypto/hmac.vitl
This page is a wiki-style reference for one concrete stdlib file. It explains what the file owns, where it fits in the family, and how to decide whether this is the right surface to depend on.
crypto/hmac.vitl.Family: crypto
Kind: public stdlib surface
Page style: this reference follows the same “encyclopedic card + portrait + usage contract” logic as the keyword pages, but for stdlib modules.
Summary
- Overview
- Purpose
- Taxonomy
- Implementation profile
- Top-level API inventory
- Position in family
- Declaration map
- Representative signatures
- How to use this module
- User example
- Keyword coverage
- Source shape
- Source landmarks
- Source organization
- Complete API catalog
- Integration boundaries
- Composition guidance
- Relationship table
- Neighbor modules
Overview
| Field | Value |
|---|---|
| Path | crypto/hmac.vitl |
| Family | crypto |
| Kind | public stdlib surface |
| Line count | 47 |
| Declared procedures | 8 |
| Declared forms/picks | 2 |
`crypto/hmac.vitl` is a public stdlib surface inside the `crypto` family. It should be read as one focused slice of the broader family responsibility: Hashing, HMAC, randomness, key derivation, symmetric primitives, and asymmetric primitives.
Purpose
This file should be chosen because of responsibility, not because its name “sounds close enough”. Inside the crypto family, it carries one focused part of the contract and keeps that responsibility separate from neighboring concerns.
- A package manifest can be serialized first, then hashed, then optionally signed.
- A token flow can derive a key in one boundary and use it in another without mixing concerns.
Taxonomy
Think of this page as a generated encyclopedia entry rather than a hand-written tutorial. The goal is to show what kind of module this is, how dense it is, and what reading strategy makes sense before depending on it.
- Medium procedure surface: this file groups several related operations behind one namespace.
- Owns domain vocabulary: the module declares data shapes in addition to executable helpers, so its types are part of the contract.
- Minimal top-level dependencies: the module reads as mostly self-contained from its opening declarations.
Implementation profile
This profile is inferred directly from the source text. It does not replace reading the file, but it tells you quickly whether the module is mostly declarative, loop-heavy, branch-heavy, or organized around many small exits.
| Signal | Count | What it suggests |
|---|---|---|
if | 0 | Branching density and local decision-making. |
while | 0 | Loop-heavy or iterative implementation style. |
for | 0 | Collection-style traversal at source level. |
match | 0 | Variant-driven branching or grammar-style decoding. |
let | 0 | Local state and intermediate value density. |
give | 8 | Number of explicit exit points and result shaping. |
Top-level API inventory
| Surface | Items |
|---|---|
| Procedures | hmac_new, hmac_update, hmac_final, hmac_final_hex, hmac_version, hmac_ready, hmac_manifest, hmac_selftest |
| Forms | HMAC, HMACManifest |
| Picks | none declared at top level |
| Constants | none declared at top level |
| Exports | none declared at top level |
Imported surfaces
This file does not advertise a top-level `use` surface in its opening declarations. That often means it is either self-contained or an aggregation layer.
Position in family
This file is module 5 of 9 in the crypto family when ordered by path. By procedure count it ranks 8, and by line count it ranks 8. Those ranks are useful as rough signals of breadth, not as quality judgments.
Declaration map
The declaration map turns raw source into a scan-friendly catalog. It is useful when the file is large enough that a reader wants to orient by kinds of surfaces first.
| Line | Name | Kind | Role |
|---|---|---|---|
| 1 | vitte/stdlib_checked/crypto_hmac | space | Declares the namespace that anchors this file in the stdlib tree. |
| 9 | HMAC | form | Introduces a structured data shape that other procedures can exchange. |
| 13 | HMACManifest | form | Introduces a structured data shape that other procedures can exchange. |
| 17 | hmac_new | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 21 | hmac_update | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 25 | hmac_final | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 29 | hmac_final_hex | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 33 | hmac_version | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 37 | hmac_ready | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 41 | hmac_manifest | proc | Implements a security-sensitive transformation in the crypto boundary. |
| 45 | hmac_selftest | proc | Implements a security-sensitive transformation in the crypto boundary. |
The table is exhaustive for top-level declarations of the selected kinds. This file declares 11 matching surfaces.
Representative signatures
These signatures are shown in source order so the page keeps the feel of a reference manual, not just a keyword cloud.
form HMAC {(line 9)form HMACManifest {(line 13)proc hmac_new() -> int {(line 17)proc hmac_update() -> int {(line 21)proc hmac_final() -> int {(line 25)proc hmac_final_hex() -> int {(line 29)proc hmac_version() -> int {(line 33)proc hmac_ready() -> int {(line 37)proc hmac_manifest() -> int {(line 41)proc hmac_selftest() -> int {(line 45)
How to use this module
Start by reading the file as an ownership boundary. Ask three questions: what enters this module, what stable types or procedures it exports, and what adjacent module should stay outside of it.
- Read
spaceand top-level imports first so the ownership boundary ofcrypto/hmac.vitlis explicit. - Read declared forms and picks before algorithms so the data vocabulary is stable in your head.
- Traverse procedures in source order; the early helpers usually explain the naming and numeric conventions used later.
- Only after that compare neighbor modules, because the right boundary choice matters more than memorizing one helper name.
User example
This example is generated from the actual stdlib module surface. Its job is not to be the smallest snippet possible; its job is to show a realistic consumer-shaped file that exercises the module and mirrors the language keywords the module itself relies on.
space demo/crypto_hmac
form UserReport {
label: string,
ready: bool
}
proc run_example() -> UserReport {
give UserReport { label: "ok", ready: ready }
}
Keyword coverage
This table makes the “all keywords of the module” requirement auditable. It compares the detected Vitte keywords in the source file with the generated consumer example above.
| Keyword | Present in module source | Used in generated user example |
|---|---|---|
space | yes | yes |
form | yes | yes |
proc | yes | yes |
give | yes | yes |
The generated snippet exercises every detected Vitte keyword used by this module.
Source shape
space vitte/stdlib_checked/crypto_hmac
form HMAC {
value: int
}
form HMACManifest {
value: int
}
proc hmac_new() -> int {
give 0
}
The excerpt is not meant to replace the file. It exists to make the module recognizable at first glance, the same way a Wikipedia infobox helps the reader orient before reading the whole article.
Source landmarks
Large files are easier to retain when they have visible landmarks. When the source contains explicit section banners, they are surfaced here; otherwise the first major declarations are used as anchors.
- Line 1:
space vitte/stdlib_checked/crypto_hmac - Line 9:
form HMAC { - Line 13:
form HMACManifest { - Line 17:
proc hmac_new() -> int { - Line 21:
proc hmac_update() -> int { - Line 25:
proc hmac_final() -> int { - Line 29:
proc hmac_final_hex() -> int { - Line 33:
proc hmac_version() -> int {
Source organization
When a file carries its own internal chaptering, those chapters usually reveal the intended reading order better than a flat symbol list. This section reconstructs that organization from the source itself.
File surfaces
Top-level items: 11. Procedures: 8. Data surfaces: 2. Constants: 0.
First visible names: vitte/stdlib_checked/crypto_hmac, HMAC, HMACManifest, hmac_new, hmac_update, hmac_final, hmac_final_hex, hmac_version, hmac_ready, hmac_manifest
Complete API catalog
This catalog is the exhaustive file-level index for the module. It is intentionally closer to a generated encyclopedia appendix than to a tutorial summary.
Data surfaces
| Line | Name | Signature | Role |
|---|---|---|---|
| 9 | HMAC | form HMAC { | Introduces a structured data shape that other procedures can exchange. |
| 13 | HMACManifest | form HMACManifest { | Introduces a structured data shape that other procedures can exchange. |
Procedures
| Line | Name | Signature | Role |
|---|---|---|---|
| 17 | hmac_new | proc hmac_new() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 21 | hmac_update | proc hmac_update() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 25 | hmac_final | proc hmac_final() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 29 | hmac_final_hex | proc hmac_final_hex() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 33 | hmac_version | proc hmac_version() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 37 | hmac_ready | proc hmac_ready() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 41 | hmac_manifest | proc hmac_manifest() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
| 45 | hmac_selftest | proc hmac_selftest() -> int { | Implements a security-sensitive transformation in the crypto boundary. |
Integration boundaries
Within crypto, this file should remain focused. If a future helper changes the host boundary, scheduling boundary, or data-shape boundary, it probably belongs in a neighbor module instead of being added here by convenience.
- Family responsibility: Hashing, HMAC, randomness, key derivation, symmetric primitives, and asymmetric primitives.
- Family architecture role: Use `crypto` when integrity, secrecy, or key management is the feature. This family should never be presented as generic formatting or utility code.
Composition guidance
Choose this module when
- Choose
crypto/hmac.vitlwhen the main question is owned by this module rather than by transport, storage, orchestration, or user-interface code. - A package manifest can be serialized first, then hashed, then optionally signed.
- A token flow can derive a key in one boundary and use it in another without mixing concerns.
Pause before extending it when
- Avoid extending this file when the new helper mostly changes the boundary to host I/O, runtime coordination, or foreign integration instead of staying inside
crypto. - Check nearby modules such as
crypto/asymmetric.vitl,crypto/hash.vitl,crypto/hashing.vitlbefore adding convenience wrappers here.
Relationship table
This table keeps the page closer to a real encyclopedia entry: a module is easier to understand when compared with its nearest alternatives in the same family.
| Neighbor | Procedures | Data surfaces | Why compare it |
|---|---|---|---|
crypto/asymmetric.vitl | 10 | 0 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto/hash.vitl | 22 | 2 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto/hashing.vitl | 10 | 0 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto/keyderivation.vitl | 7 | 1 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto/random.vitl | 13 | 1 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto/symmetric.vitl | 10 | 0 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto/utils.vitl | 11 | 1 | Shares the same family boundary but carries a distinct slice of responsibility. |
crypto.vitl | 44 | 6 | Shares the same family boundary but carries a distinct slice of responsibility. |