pub fn tuplehash128_xof(tuple: &[&[u8]], custom: &[u8], out: &mut [u8])
TupleHashXOF128 (NIST SP 800-185 §5).
XOF variant: right_encode(0) in place of the output length. NIST SP 800-185 §5.3.1.
right_encode(0)