Stdlib module crypto/hmac.vitl

This page is a wiki-style reference for one concrete stdlib file. It explains what the file owns, where it fits in the family, and how to decide whether this is the right surface to depend on.

Visual portrait of crypto/hmac.vitl
Wiki-style portrait for crypto/hmac.vitl.

Family: crypto

Kind: public stdlib surface

Page style: this reference follows the same “encyclopedic card + portrait + usage contract” logic as the keyword pages, but for stdlib modules.

Summary

Overview

FieldValue
Pathcrypto/hmac.vitl
Familycrypto
Kindpublic stdlib surface
Line count47
Declared procedures8
Declared forms/picks2

`crypto/hmac.vitl` is a public stdlib surface inside the `crypto` family. It should be read as one focused slice of the broader family responsibility: Hashing, HMAC, randomness, key derivation, symmetric primitives, and asymmetric primitives.

Purpose

This file should be chosen because of responsibility, not because its name “sounds close enough”. Inside the crypto family, it carries one focused part of the contract and keeps that responsibility separate from neighboring concerns.

  • A package manifest can be serialized first, then hashed, then optionally signed.
  • A token flow can derive a key in one boundary and use it in another without mixing concerns.

Taxonomy

Think of this page as a generated encyclopedia entry rather than a hand-written tutorial. The goal is to show what kind of module this is, how dense it is, and what reading strategy makes sense before depending on it.

  • Medium procedure surface: this file groups several related operations behind one namespace.
  • Owns domain vocabulary: the module declares data shapes in addition to executable helpers, so its types are part of the contract.
  • Minimal top-level dependencies: the module reads as mostly self-contained from its opening declarations.

Implementation profile

This profile is inferred directly from the source text. It does not replace reading the file, but it tells you quickly whether the module is mostly declarative, loop-heavy, branch-heavy, or organized around many small exits.

SignalCountWhat it suggests
if0Branching density and local decision-making.
while0Loop-heavy or iterative implementation style.
for0Collection-style traversal at source level.
match0Variant-driven branching or grammar-style decoding.
let0Local state and intermediate value density.
give8Number of explicit exit points and result shaping.

Top-level API inventory

SurfaceItems
Procedureshmac_new, hmac_update, hmac_final, hmac_final_hex, hmac_version, hmac_ready, hmac_manifest, hmac_selftest
FormsHMAC, HMACManifest
Picksnone declared at top level
Constantsnone declared at top level
Exportsnone declared at top level

Imported surfaces

This file does not advertise a top-level `use` surface in its opening declarations. That often means it is either self-contained or an aggregation layer.

Position in family

This file is module 5 of 9 in the crypto family when ordered by path. By procedure count it ranks 8, and by line count it ranks 8. Those ranks are useful as rough signals of breadth, not as quality judgments.

Declaration map

The declaration map turns raw source into a scan-friendly catalog. It is useful when the file is large enough that a reader wants to orient by kinds of surfaces first.

LineNameKindRole
1vitte/stdlib_checked/crypto_hmacspaceDeclares the namespace that anchors this file in the stdlib tree.
9HMACformIntroduces a structured data shape that other procedures can exchange.
13HMACManifestformIntroduces a structured data shape that other procedures can exchange.
17hmac_newprocImplements a security-sensitive transformation in the crypto boundary.
21hmac_updateprocImplements a security-sensitive transformation in the crypto boundary.
25hmac_finalprocImplements a security-sensitive transformation in the crypto boundary.
29hmac_final_hexprocImplements a security-sensitive transformation in the crypto boundary.
33hmac_versionprocImplements a security-sensitive transformation in the crypto boundary.
37hmac_readyprocImplements a security-sensitive transformation in the crypto boundary.
41hmac_manifestprocImplements a security-sensitive transformation in the crypto boundary.
45hmac_selftestprocImplements a security-sensitive transformation in the crypto boundary.

The table is exhaustive for top-level declarations of the selected kinds. This file declares 11 matching surfaces.

Representative signatures

These signatures are shown in source order so the page keeps the feel of a reference manual, not just a keyword cloud.

  • form HMAC { (line 9)
  • form HMACManifest { (line 13)
  • proc hmac_new() -> int { (line 17)
  • proc hmac_update() -> int { (line 21)
  • proc hmac_final() -> int { (line 25)
  • proc hmac_final_hex() -> int { (line 29)
  • proc hmac_version() -> int { (line 33)
  • proc hmac_ready() -> int { (line 37)
  • proc hmac_manifest() -> int { (line 41)
  • proc hmac_selftest() -> int { (line 45)

How to use this module

Start by reading the file as an ownership boundary. Ask three questions: what enters this module, what stable types or procedures it exports, and what adjacent module should stay outside of it.

  1. Read space and top-level imports first so the ownership boundary of crypto/hmac.vitl is explicit.
  2. Read declared forms and picks before algorithms so the data vocabulary is stable in your head.
  3. Traverse procedures in source order; the early helpers usually explain the naming and numeric conventions used later.
  4. Only after that compare neighbor modules, because the right boundary choice matters more than memorizing one helper name.

User example

This example is generated from the actual stdlib module surface. Its job is not to be the smallest snippet possible; its job is to show a realistic consumer-shaped file that exercises the module and mirrors the language keywords the module itself relies on.

space demo/crypto_hmac
form UserReport {
  label: string,
  ready: bool
}
proc run_example() -> UserReport {
    give UserReport { label: "ok", ready: ready }
}

Keyword coverage

This table makes the “all keywords of the module” requirement auditable. It compares the detected Vitte keywords in the source file with the generated consumer example above.

KeywordPresent in module sourceUsed in generated user example
spaceyesyes
formyesyes
procyesyes
giveyesyes

The generated snippet exercises every detected Vitte keyword used by this module.

Source shape

space vitte/stdlib_checked/crypto_hmac
form HMAC {
  value: int
}
form HMACManifest {
  value: int
}
proc hmac_new() -> int {
  give 0
}

The excerpt is not meant to replace the file. It exists to make the module recognizable at first glance, the same way a Wikipedia infobox helps the reader orient before reading the whole article.

Source landmarks

Large files are easier to retain when they have visible landmarks. When the source contains explicit section banners, they are surfaced here; otherwise the first major declarations are used as anchors.

  • Line 1: space vitte/stdlib_checked/crypto_hmac
  • Line 9: form HMAC {
  • Line 13: form HMACManifest {
  • Line 17: proc hmac_new() -> int {
  • Line 21: proc hmac_update() -> int {
  • Line 25: proc hmac_final() -> int {
  • Line 29: proc hmac_final_hex() -> int {
  • Line 33: proc hmac_version() -> int {

Source organization

When a file carries its own internal chaptering, those chapters usually reveal the intended reading order better than a flat symbol list. This section reconstructs that organization from the source itself.

File surfaces

Top-level items: 11. Procedures: 8. Data surfaces: 2. Constants: 0.

First visible names: vitte/stdlib_checked/crypto_hmac, HMAC, HMACManifest, hmac_new, hmac_update, hmac_final, hmac_final_hex, hmac_version, hmac_ready, hmac_manifest

Complete API catalog

This catalog is the exhaustive file-level index for the module. It is intentionally closer to a generated encyclopedia appendix than to a tutorial summary.

Data surfaces

LineNameSignatureRole
9HMACform HMAC {Introduces a structured data shape that other procedures can exchange.
13HMACManifestform HMACManifest {Introduces a structured data shape that other procedures can exchange.

Procedures

LineNameSignatureRole
17hmac_newproc hmac_new() -> int {Implements a security-sensitive transformation in the crypto boundary.
21hmac_updateproc hmac_update() -> int {Implements a security-sensitive transformation in the crypto boundary.
25hmac_finalproc hmac_final() -> int {Implements a security-sensitive transformation in the crypto boundary.
29hmac_final_hexproc hmac_final_hex() -> int {Implements a security-sensitive transformation in the crypto boundary.
33hmac_versionproc hmac_version() -> int {Implements a security-sensitive transformation in the crypto boundary.
37hmac_readyproc hmac_ready() -> int {Implements a security-sensitive transformation in the crypto boundary.
41hmac_manifestproc hmac_manifest() -> int {Implements a security-sensitive transformation in the crypto boundary.
45hmac_selftestproc hmac_selftest() -> int {Implements a security-sensitive transformation in the crypto boundary.

Integration boundaries

Within crypto, this file should remain focused. If a future helper changes the host boundary, scheduling boundary, or data-shape boundary, it probably belongs in a neighbor module instead of being added here by convenience.

  • Family responsibility: Hashing, HMAC, randomness, key derivation, symmetric primitives, and asymmetric primitives.
  • Family architecture role: Use `crypto` when integrity, secrecy, or key management is the feature. This family should never be presented as generic formatting or utility code.

Composition guidance

Choose this module when

  • Choose crypto/hmac.vitl when the main question is owned by this module rather than by transport, storage, orchestration, or user-interface code.
  • A package manifest can be serialized first, then hashed, then optionally signed.
  • A token flow can derive a key in one boundary and use it in another without mixing concerns.

Pause before extending it when

  • Avoid extending this file when the new helper mostly changes the boundary to host I/O, runtime coordination, or foreign integration instead of staying inside crypto.
  • Check nearby modules such as crypto/asymmetric.vitl, crypto/hash.vitl, crypto/hashing.vitl before adding convenience wrappers here.

Relationship table

This table keeps the page closer to a real encyclopedia entry: a module is easier to understand when compared with its nearest alternatives in the same family.

NeighborProceduresData surfacesWhy compare it
crypto/asymmetric.vitl100Shares the same family boundary but carries a distinct slice of responsibility.
crypto/hash.vitl222Shares the same family boundary but carries a distinct slice of responsibility.
crypto/hashing.vitl100Shares the same family boundary but carries a distinct slice of responsibility.
crypto/keyderivation.vitl71Shares the same family boundary but carries a distinct slice of responsibility.
crypto/random.vitl131Shares the same family boundary but carries a distinct slice of responsibility.
crypto/symmetric.vitl100Shares the same family boundary but carries a distinct slice of responsibility.
crypto/utils.vitl111Shares the same family boundary but carries a distinct slice of responsibility.
crypto.vitl446Shares the same family boundary but carries a distinct slice of responsibility.

Neighbor modules