The software fallback is optimized for multiblock encryption and it's constant time so I haven't benchmarked it but could. If people prefer using it for just single block encrypt/decrypt I could change things around.
I am planning on adding a benchmark target shortly