Skip to content

Conversation

@tarcieri
Copy link
Contributor

@tarcieri tarcieri commented Jan 4, 2026

This commit is intended as the base commit for other proposed breaking changes, almost all of which will involve bumping the MSRV close to this (in fact if we want const fn support for black_box we need to go all the way to 1.86, this doesn't quite do that yet).

It includes a few different changes, and I'm happy to split these up into separate PRs if that's helpful:

  • Updates CI config
    • sets permissions to read-only
    • sets RUSTFLAGS to -D warnings to deny warnings
    • uses dtolnay/rust-toolchain instead of the unmaintained actions-rs/toolchain@v1
    • uses run directly instead of the unmaintained actions-rs/cargo@v1
    • removes feature-specific tests because features have been removed(!)
    • adds additional unsafe code testing using cargo careful and cargo miri
    • tests both dev and release builds
  • Bumps version to 3.0.0-pre to denote breaking changes
  • Removes obsolete html_root_url
  • Bumps edition to 2024; note this changed rustfmt rules and so rustfmt has also been applied with the new rules
  • Bumps MSRV to 1.85.0 and adds rust-version setting to Cargo.toml
  • Removes obsolete settings related to Travis CI (which has since been replaced by GitHub Actions)
  • Adds .github to exclude in Cargo.toml
  • Bumps rand from 0.8 to 0.9 (though 0.10 will be released soon)
  • Removes all features: with the MSRV bump, we no longer need any of these feature gates as all features will be available (the std feature didn't actually use anything from std and is thus pointless)
  • Makes core::hint::black_box the only value barrier/fence strategy for Choice: despite the scary documentation, it should be superior to the previous core::ptr::read_volatile approach, at least based on questions I have posed to various Rust compiler engineers, and is also const fn stable in Rust 1.86. In subsequent commits, I plan on attempting to add the cmov crate which provides asm!-backed equivalents of ConditionalSelect and ConstantTimeEq

This commit is intended as the base commit for other proposed breaking
changes, almost all of which will involve bumping the MSRV close to this
(in fact if we want `const fn` support for `black_box` we need to go all
the way to 1.86, this doesn't quite do that yet).

It includes a few different changes, and I'm happy to split these up
into separate PRs if that's helpful:

- Updates CI config
  - sets `permissions` to read-only
  - sets `RUSTFLAGS` to `-D warnings` to deny warnings
  - uses `dtolnay/rust-toolchain` instead of the unmaintained
    `actions-rs/toolchain@v1`
  - uses `run` directly instead of the unmaintained
    `actions-rs/cargo@v1`
  - removes feature-specific tests because features have been removed(!)
  - adds additional `unsafe` code testing using `cargo careful` and
    `cargo miri`
  - tests both `dev` and `release` builds
- Bumps version to `3.0.0-pre` to denote breaking changes
- Removes obsolete `html_root_url`
- Bumps edition to 2024; note this changed rustfmt rules and so rustfmt
  has also been applied with the new rules
- Bumps MSRV to 1.85.0 and adds `rust-version` setting to `Cargo.toml`
- Removes obsolete settings related to Travis CI (which has since been
  replaced by GitHub Actions)
- Adds `.github` to `exclude` in `Cargo.toml`
- Bumps `rand` from `0.8` to `0.9` (though `0.10` will be released soon)
- Removes all features: with the MSRV bump, we no longer need any of
  these feature gates as all features will be available (the `std`
  feature didn't actually use anything from `std` and is thus pointless)
- Makes `core::hint::black_box` the only value barrier/fence strategy
  for `Choice`: despite the scary documentation, it should be superior
  to the previous `core::ptr::read_volatile` approach, at least based
  on questions I have posed to various Rust compiler engineers, and
  is also `const fn` stable in Rust 1.86.
tarcieri added a commit to tarcieri/subtle that referenced this pull request Jan 4, 2026
Depends on: dalek-cryptography#149

At the time this provided an interesting way to use the `subtle`
implementation of `black_box`, but now that `core::hint::black_box`
is stable someone who wants equivalent functionality can implement it
themselves using that.
@tarcieri tarcieri mentioned this pull request Jan 4, 2026

macro_rules! generate_integer_conditional_select_tests {
($($t:ty)*) => ($(
($($t:ty),*) => ($(
Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Having a comma between type names seemed more consistent with the generate_integer_equal_tests! macro

@tarcieri tarcieri force-pushed the v3.x-pre/2024-edition-and-cleaups branch from 20946de to 4776266 Compare January 4, 2026 03:20
tarcieri added a commit to tarcieri/subtle that referenced this pull request Jan 4, 2026
Depends on: dalek-cryptography#149

At the time this provided an interesting way to use the `subtle`
implementation of `black_box`, but now that `core::hint::black_box`
is stable someone who wants equivalent functionality can implement it
themselves using that.
tarcieri added a commit to tarcieri/subtle that referenced this pull request Jan 4, 2026
Depends on: dalek-cryptography#149

At the time this provided an interesting way to use the `subtle`
implementation of `black_box`, but now that `core::hint::black_box`
is stable someone who wants equivalent functionality can implement it
themselves using that.
@tarcieri
Copy link
Contributor Author

tarcieri commented Jan 4, 2026

I now notice I typoed "cleanups" In the branch name 🤦

@tarcieri tarcieri force-pushed the v3.x-pre/2024-edition-and-cleaups branch from 4776266 to fb03fa4 Compare January 4, 2026 03:40
@tarcieri tarcieri force-pushed the v3.x-pre/2024-edition-and-cleaups branch from fb03fa4 to 39e1376 Compare January 4, 2026 03:44
tarcieri added a commit to tarcieri/subtle that referenced this pull request Jan 4, 2026
Depends on: dalek-cryptography#149

At the time this provided an interesting way to use the `subtle`
implementation of `black_box`, but now that `core::hint::black_box`
is stable someone who wants equivalent functionality can implement it
themselves using that.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant