Skip to content

Compare

Four documents, the same five questions.

No throughput league table and no yield. The cells are what this library is willing to say about the text.

QuestionBulletproofs: Short Proofs for Confidential Transactions and More
What the text proposesRange proofs whose size grows logarithmically, with no trusted setup. They made confidential amounts practical to verify. They are not, by themselves, a private payment system.
Who may writeBenedikt Bünz, Jonathan Bootle, Dan Boneh, Andrew Poelstra, Pieter Wuille and Greg Maxwell
What is settledAn inner-product argument replaces a linear-sized circuit proof.
Load-bearing assumptionA Bulletproof does not prove a program, a solvency claim, or a reserve. It proves the statement that was encoded.
What this library says afterwardsAggregation changes verification scheduling. It does not change the trust model into a setup-free SNARK for arbitrary circuits. That is a different paper.
RightsOfficial external source only