Recordsgolanggolang.org/x/cryptov0.20.0golang.org/x/crypto/hkdf.Expand
Change the conditions
Current conditions
golang.org/x/crypto/hkdf.Expand @v0.20.0ubuntu glibc · x64 · go 1.26 · go 1
0 of 5 passed
Verified — this network ran a contract at this coordinate.
there is a sample here, and our run of it at this coordinate failed (1)
- Project observations
- 4 / 4
- Contract verifications
- 0 / 5
- Independent reporting peers
- 2
- Last recorded
- 2026-08-30
Dependency Health
Observed combinations and failure evidence for this release
First observed break
v0.20.0 golang.org/x/net@v0.21.0
linux
13 FAIL · stage: PROJECT_PROCESS
| Library | Version | Health | Measured there | Projects |
|---|---|---|---|---|
| golang.org/x/net | v0.21.0 | FAIL Linked failure observed; version changed across releases | contract passed | 6 project-days |
| golang.org/x/sys | v0.17.0 | FAIL Linked failure observed; version changed across releases | contract passed | 6 project-days |
| golang.org/x/term | v0.17.0 | FAIL Linked failure observed; version changed across releases | builds observed | 6 project-days |
The measured column is about each dependency's own release, not about the pair. A resolver placing two releases side by side is not evidence that they work together.
Dependency versions across releases
What each release of this package resolved its children to. A child whose version moved is listed first: that is where an upgrade changed something underneath you.
| Library | v0.55.0 | v0.54.0 | v0.52.0 | v0.50.0 | v0.48.0 | v0.36.0 | v0.20.0 | v0.19.0 | v0.0.0-20210921155107-089bfa567519 | v0.0.0-20200622213623-75b288015ac9 |
|---|---|---|---|---|---|---|---|---|---|---|
| golang.org/x/net | v0.57.0 | v0.57.0 | v0.55.0 | v0.53.0 | v0.50.0 | v0.21.0 | v0.21.0 | v0.21.0 | v0.4.0 | v0.0.0-20210525063256-abc453219eb5 |
| golang.org/x/sys | v0.47.0 | v0.47.0 | v0.45.0 | v0.43.0 | v0.41.0 | v0.31.0 | v0.17.0 | v0.17.0 | v0.47.0 | v0.47.0 |
| golang.org/x/term | v0.45.0 | v0.45.0 | v0.43.0 | v0.42.0 | v0.40.0 | v0.30.0 | v0.17.0 | v0.17.0 | — | — |
Moved: 3 · unchanged at every release: 0
An edge records that a resolver placed one release beside another on a real machine. It is not a claim that the two work together; that question is answered by samples and contracts, not by presence here.
Recent failure clusters
-
observed PROJECT_PROCESS ERR_ASSERTION Evidence gap ×13 v0.0.0-20220331220935-ae2d96664a29 → v0.19.0 → v0.20.0 → v0.26.0 → v0.27.0 → v0.36.0 → v0.54.0 os=linuxEvidence quality: legacy-evidence-incomplete · Environment variants: 2 · First recorded: 2026-08-21 · Last seen: 2026-08-27Diagnostic re-verification candidate
-
observed UNKNOWN exit 1 Evidence gap ×1 v0.20.0 os=linux · runtime=go@1.26 golang.org/x/crypto/hkdf.Expand sha256:1bfa3931a604…test/contract.go:<n>:<n>: package crypto/sha384 is not in std (<path>go · unclassified-diagnostic · outer go run · gap stage-unknownEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-29 · Last seen: 2026-08-29Diagnostic re-verification candidate
-
observed UNKNOWN exit 1 Evidence gap ×1 v0.20.0 os=linux · runtime=go@1.26 golang.org/x/crypto/hkdf.Expand sha256:6d2641f6bf31…RFC 5869 test vector 2 OKM mismatch · exit status 1go · unclassified-diagnostic · outer go run · gap stage-unknownEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-29 · Last seen: 2026-08-29Diagnostic re-verification candidate
-
observed UNKNOWN exit 1 Evidence gap ×1 v0.20.0 os=linux · runtime=go@1.26 golang.org/x/crypto/hkdf.Expand sha256:9e30b083c261…# example.com/sample/test · test/contract.go:<n>:<n>: multiple-value io.ReadFull(rInfoB, outB) (value of type (n int, err error)) in single-value contextgo · unclassified-diagnostic · outer go run · gap stage-unknownEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-29 · Last seen: 2026-08-29Diagnostic re-verification candidate
-
observed UNKNOWN exit 1 Evidence gap ×1 v0.20.0 os=linux · runtime=go@1.26 golang.org/x/crypto/hkdf.Expand sha256:b1b6766afedf…RFC 5869 test vector 1 OKM mismatch: got <token>, want <token> · exit status 1go · unclassified-diagnostic · outer go run · gap stage-unknownEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-29 · Last seen: 2026-08-29Diagnostic re-verification candidate
-
observed UNKNOWN exit 1 Evidence gap ×1 v0.20.0 os=linux · runtime=go@1.26 sha256:48312c939afd…# sample · <path> unknown field Host in struct literal of type pgx.ConnConfig · <path> unknown field Port in struct literal of type pgx.ConnConfig …go · unclassified-diagnostic · outer go run · gap stage-unknownEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-30 · Last seen: 2026-08-30Diagnostic re-verification candidate
-
observed UNKNOWN exit 1 Evidence gap ×1 v0.20.0 os=linux · runtime=go@1.26 golang.org/x/crypto/hkdf.Expand sha256:46a5c6d5d672…Expected to read exactly maxBytes (8160), read 0 (err: hkdf: entropy limit reached) · exit status 1go · unclassified-diagnostic · outer go run · gap stage-unknownEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-30 · Last seen: 2026-08-30Diagnostic re-verification candidate
-
observed PROJECT_TEST exit 1 ×1 v0.20.0 os=linux · runtime=go@1.26 sha256:920586b89908…--- FAIL: <token> (0.00s) · === RUN <token> · --- PASS: <token> (0.00s) · === RUN TestHKDFExtractNilAndEmptySaltgo/test · test-runner-diagnostic · outer go testEvidence quality: complete · Environment variants: 1 · First recorded: 2026-08-31 · Last seen: 2026-08-31