top | item 12986189

(no title)

daira | 9 years ago

There are ways to significantly reduce the cost of zk proof verification by batching (that are compatible with the existing Zcash protocol without a fork).

discuss

order

petertodd|9 years ago

Prove it first by actually implementing those ways and having them survive peer review; this is highly experimental crypto so it's not clear what's actually possible.

Again, I don't think it's very responsible to knowingly release design a protocol that in its current form would collapse if heavily used due to a lack of safety limits.