pub fn decrypt(blob: &[u8], key: &[u8; 32]) -> Result<Vec<u8>, BundleError>
Decrypt nonce || ciphertext back into the plaintext container.
nonce || ciphertext