The full upstream README, mirrored here for reference. Install config, tool schemas, adoption signals, and an original overview live on the WebCrypt MCP Server listing page.
Zero-dependency Web Crypto & native AI Agent Tooling (MCP) for modern JavaScript.
AES-256-GCM symmetric encryption, RSA-4096 hybrid public keys, ECDH key agreement, ECDSA/HMAC digital signatures, and Post-Quantum KEM (Kyber/Dilithium) — zero runtime dependencies, pure Web Crypto API.
Supports Google Antigravity, Cursor, Claude Desktop, VS Code / Copilot, Windsurf, Cline, and Zed.
Equip autonomous coding agents with an authenticated cryptographic vault directly in their toolbelt:
encrypt_payload): Encrypt API keys and state memory before writing to disk to prevent prompt log leaks.sign_verify): Cryptographically sign test evidence packs, release binaries, and code diffs with ECDSA or HMAC.manage_keys): Ephemeral JWK keypairs (RSA-4096, ECDH P-256/P-384) for private agent-to-agent messaging.pqc_kem_sign): Built-in Kyber KEM and Dilithium signatures future-proof long-term agent artifacts.crypto.subtle execution across Node.js 18+, Bun, browsers, and Edge runtimes.| Tool | Action / Mode | Description |
|---|---|---|
encrypt_payload | symmetric | asymmetric | data | Encrypt text, JSON objects, or files with AES-256-GCM or RSA-4096. |
decrypt_payload | symmetric | asymmetric | data | Decrypt ciphertext back to plaintext or structured JSON. |
manage_keys | generate | generate_random_password | Generate JWK keypairs (RSA, ECDH, ECDSA, RSA-PSS) or high-entropy passwords. |
crypto_hash | SHA-256 | SHA-512 | SHA-3 | Compute cryptographic hash digests in hex or base64. |
sign_verify | sign | verify | Sign and verify messages, release hashes, and evidence packs. |
pqc_kem_sign | kyber_* | dilithium_* | hybrid_* | Post-quantum Kyber KEM encapsulation and Dilithium signatures. |
Explore dedicated guides in docs/ and examples/:
| Guide | Topic |
|---|---|
| 🚀 Live Interactive Playground | Test all crypto features in the browser demo. |
| 💻 CLI Reference Guide | Scaffolding, global project scanning, and terminal utilities. |
| ⚙️ Multi-IDE MCP Setup Guide | Step-by-step MCP JSON configs for all major IDEs. |
🔒 Symmetric Encryption API (WebCrypt) | AES-256-GCM, streaming files, WebRTC E2EE, PBKDF2. |
🔑 Asymmetric Encryption API (WebCryptAsym) | RSA-4096 hybrid, ECDH key agreement, ECDSA/RSA-PSS. |
| ⚛️ Post-Quantum Cryptography Guide | Kyber KEM, Dilithium signatures, and Hybrid KEM. |
| 🏗️ Architecture & MCP Specifications | Stdio JSON-RPC 2.0 protocol and chunk framing specs. |
| 🤖 Agent Skill Definition | Custom agent skill with automated test runner script. |
| 📋 Project Instructions Template | Multi-agent rules template (<!-- webcrypt-mcp:start -->). |
| 💡 Code Examples Directory | Ready-to-run Node.js & browser recipes. |
@putervision/state-memory-mcp: Persistent SQLite graph for workflow states, task DAGs, and decision trails.@putervision/vision-memory-mcp: Multimodal visual layout cache, AX grounding, and video replay analysis.webcrypt: Zero-dependency cryptographic vault, payload encryption, key management, and digital signatures.Developed and maintained by PuterVision. Released under the MIT License.
crypto.subtle). Zero external API calls, telemetry, or network transmissions.