Download the PHP package silencenjoyer/jwe without Composer
On this page you can find all versions of the php package silencenjoyer/jwe. It is possible to download/install these versions without Composer. Possible dependencies are resolved automatically.
Informations about the package jwe
🔐 silencenjoyer/jwe
A PHP library for JSON Web Encryption (JWE) as defined in RFC 7516.
Supports symmetric shared-key and asymmetric RSA end-to-end encryption, multiple content encryption algorithms, and both JWE Compact and JSON serialization formats.
Requirements
- PHP 7.4 or 8.0+
ext-opensslext-json
Installation
Supported algorithms
| Role | Identifier | Class | Description |
|---|---|---|---|
| Key encapsulation | dir |
DirectKeyWrapper / DirectKeyUnwrapper |
Shared symmetric key used directly as CEK |
| Key encapsulation | RSA-OAEP |
RsaKeyWrapper / RsaKeyUnwrapper |
CEK encrypted with recipient's RSA public key |
| Content encryption | A256GCM |
Aes256GcmFactory |
AES-256 in GCM mode (32-byte CEK) |
| Content encryption | A256CBC-HS512 |
Aes256CbcFactory |
AES-256 in CBC mode with HMAC-SHA-512 (64-byte CEK) |
Usage
Symmetric encryption (shared secret)
Both parties share the same secret key. The key is used directly as the Content Encryption Key (CEK), so encrypted_key in the JWE token is empty.
RSA end-to-end encryption
The sender encrypts a random CEK with the recipient's public RSA key. Only the holder of the matching private key can recover the CEK and decrypt the content. No shared secret is required.
To generate a key pair:
AutoDecryptor — algorithm-agnostic decryption
AutoDecryptor reads the algorithm identifiers from the JWE protected header at runtime and selects the correct unwrapper and cipher automatically. Register the algorithms you want to support once, then decrypt any compatible token.
If the token uses an algorithm that was not registered, UnsupportedAlgorithmException is thrown.
Serialization formats
The library supports both JWE serialization formats defined in RFC 7516.
Compact serialization — five base64url parts separated by dots, suitable for HTTP headers and URLs:
JSON serialization — a JSON object, easier to inspect and log:
Loading keys
⚒️ Code Quality:
- Tests:
composer test - Static analysis:
composer phpstan - PSR-12 formatting
License
MIT
All versions of jwe with dependencies
ext-openssl Version *
ext-json Version *