Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #5087

Details

Module Name
OpenSK Cryptographic Module
Standard
FIPS 140-3
Status
Active
Sunset Date
10/22/2030
Overall Level
1
Caveat
None
Security Level Exceptions
  • Physical security: Level 3
  • Non-invasive security: N/A
Module Type
Hardware
Embodiment
Single Chip
Description
Implemented with Google's "Titan" secure microcontroller and custom firmware, the OpenSK Cryptographic Module is a FIPS-compliant Universal 2nd Factor (U2F) authenticator and hardware root of trust.
Approved Algorithms
AES-CBC
AES-ECB
ECDSA KeyGen (FIPS186-4)
ECDSA KeyVer (FIPS186-4)
ECDSA SigGen (FIPS186-4)
ECDSA SigVer (FIPS186-4)
HMAC DRBG
HMAC-SHA2-256
HMAC-SHA2-256
KAS-ECC-SSC Sp800-56Ar3
KDA HKDF SP800-56Cr2
SHA2-256
SHA2-256

Vendor

Google, LLC.
1600 Amphitheatre Parkway
Mountain View, CA 94043
USA

FIPS Crypto Officer
[email protected]
Phone: 650-253-0000

Validation History

Date Type Lab
10/23/2025 Initial Lightship Security, Inc.