Honorable (?) mention goes to (client-side) JavaScript - it's harder to have threading issues if you only have a single thread to work with!
"Linus Torvalds, though, argued that none of this effort was worth it. Speeding up random-number generation, beyond a point, is not the kernel's job, he said; instead, that should be left to the C library."
https://lwn.net/Articles/919008/
I've not been following the mailing lists so I don't know if that ever changed since then. The dev (Jason Donenfeld) seemed to think there was a way to get it working without the issues that blocked the improvement from getting merged last time though.
Also, if you feel that strongly, please don't roll your own crypto and use a CSPRNG.
you could pull different set lengths of pseudorandom numbers from the different seeds
https://hackage.haskell.org/package/MonadRandom-0.1.3/docs/C...