From 35a6325ba12d0462bf01eb740fb6abde2d43c17a Mon Sep 17 00:00:00 2001 From: Levi Durfee Date: Tue, 6 Jan 2026 19:08:34 -0500 Subject: Add ability to encrypt files --- internal/encrypt.go | 38 ++++++++++++++++++++++++++++++++++++++ 1 file changed, 38 insertions(+) create mode 100644 internal/encrypt.go (limited to 'internal/encrypt.go') diff --git a/internal/encrypt.go b/internal/encrypt.go new file mode 100644 index 0000000..a404de7 --- /dev/null +++ b/internal/encrypt.go @@ -0,0 +1,38 @@ +package internal + +import ( + "log" + + "github.com/joho/godotenv" +) + +func Encrypt(data []byte) (EncryptedDataPayload, error) { + if err := godotenv.Load(); err != nil { + log.Fatal("Error loading .env file") + } + + kek, err := NewKEKFromEnvB64("SECRET_KEY") + if err != nil { + return EncryptedDataPayload{}, err + } + + dek, err := NewDEK() + if err != nil { + return EncryptedDataPayload{}, err + } + + edek, err := WrapDEK(dek, kek) + if err != nil { + return EncryptedDataPayload{}, err + } + + ct, err := EncryptData(data, dek) + if err != nil { + return EncryptedDataPayload{}, err + } + + return EncryptedDataPayload{ + DEK: edek, + Payload: ct, + }, nil +} -- cgit v1.2.3