PSE is a research and development lab delivering privacy to the Ethereum ecosystem.

Joined June 2021
150 Photos and videos
Pinned Tweet
29 Nov 2025
1/ 🌱 The zkID team published OpenAC: Open Design for Transparent and Lightweight Anonymous Credentials earlier this week with a show proof time of 0.129 seconds. It describes a zero-knowledge identity construction designed to work with existing identity stacks and was purposely constructed to be compatible with the European Digital Identity Architecture and Reference Framework (EUDI ARF). github.com/privacy-ethereum/…
79
166
648
187,390
1/ New post alert! ⏰ Is onchain ZK PQ-ready? Round two of putting WHIR on Ethereum gave us an inconvenient result: small fields shrink proofs but make them challenging to verify. We rebuilt WHIR verifier over a 31-bit KoalaBear field and measured where the gas goes. pse.dev/blog/evm-verificatio… 🧵
2
9
30
2,938
4/ Can a new EVM precompile help? Profiling pointed to one operation that appears across FRI, STIR, WHIR and sumcheck - the extension-field inner product c Σ aᵢbᵢ that we called EXTFIELD_MAC. But it only drops the cost to 4.33M gas.
1
1
304
5/ 5.65M gas per tx is not too cheap ($3-4 today), but the 100-bit security of our result rests on a proven bound. The next step is to try amortizing this cost across multiple proofs with recursion/aggregation.
1
268
PSE retweeted
mopro just made history at the very first mobile event by @appjsconf — huge thanks to @swmansion, @expo, and the entire react native community for making this happen!
Many developers have heard of ZK proofs, but very few have shipped them on mobile. @vivi4322’s talk focuses on Mopro and how that changes today. 👀
2
13
955
PSE retweeted
Public petition signer lists expose signers to retaliation. In high-stakes contexts, knowing who signed can be dangerous. New IPTF writeup: Resilient Civic Participation. Prove a petition reached quorum without ever publishing who signed. Third and final post in our resilience series.
2
1
22
3,501
New on the blog: Machina iO's four-part series on circuit-specific decryption keys for FHE. A primitive that lets a decryption committee publish a key for one specific computation and then step away no need for an always-online committee. pse.dev/blog/circuit-specifi…
1
5
18
983
We built a real-world OpenAC implementation for privacy-preserving proof of personhood. It uses an existing government-issued credential, proves eligibility in zero knowledge, supports revocation checks, and runs the proof flow on mobile devices. Check threads for links and summary 🔗
6
23
75
7,445
6/ Why this matters: Privacy-preserving identity needs to work with real credentials, real devices, and real user flows. This implementation shows OpenAC running with an existing credential on mobile devices.
1
6
371
7/ What’s next: Here are the links to test if you have a valid Taiwan Citizen Digital Certificate. Web: proof-of-personhood-openac-w… iOS Testflight: testflight.apple.com/join/Uu… Android: drive.google.com/file/d/15uk… We’re also publishing the spec and welcome feedback from builders, researchers, and identity teams. zkspecs: github.com/privacy-ethereum/… And stay tuned for the upcoming production release in a BBS-style online forum setting.

10
373
The latest work from the Client Side Proving team- Spartan-WHIR: a transparent (no trusted setup), post-quantum SNARK with 128-bit security.
1/5 WIP update for our client-side Spartan-WHIR: a transparent (no trusted setup), post-quantum SNARK with 128-bit security. Repo: github.com/alxkzmn/spartan-w… Why compare against Spartan2 and ProveKit, and how we're different? 🧵👇
8
52
3,718
Have you ever wondered how does Railgun differ from Privacy Pools? Zcash vs Monero? Today you answer that by piecing together docs, blog posts, Twitter threads and code We built the Private Transfers Dashboard to make it easy🧵
8
27
123
9,124
4/ We're also adding some selective benchmarks soon. We're measuring onchain gas costs, and anonymity-set sizes across several Ethereum protocols
1
9
901
5/ This initial version covers 17 protocols: Railgun, Tornado Cash, Zcash, Monero, Privacy Pools, Hinkal, Intmax & more Coming soon: more Ethereum protocols, L2s and alt-L1s. Check out the dashboard here 👇 private-transfers.pse.dev

4
12
1,004