Skip to content
Embedded curve over the Ristretto255 scalar field, for use in Bulletproofs
JavaScript CSS HTML Rust Python
Branch: master
Clone or download
Type Name Latest commit message Commit time
Failed to load latest commit information.
notes Add link to curve selection page Jun 22, 2019
sage try looking for small d edwards May 31, 2019
src clip commented code Apr 22, 2019
theme Make the Decaf diagram themeable. May 31, 2019
.firebaserc firebase init May 1, 2019
.gitignore Try firebase May 1, 2019
.travis.yml Restructure tests May 1, 2019
Cargo.toml Add a stub of the field element API. Apr 9, 2019
LICENSE Initial commit Apr 8, 2019 Update readme (since we may use a new curve) May 31, 2019
book.toml Try firebase May 1, 2019
firebase.json firebase init May 1, 2019


Work-in-progress repo for an embedded curve over the ristretto255 scalar field, for use in Bulletproofs.

Sean Bowe previously suggested an alternate curve (cf, but for the reasons described in the notes we prefer a slightly different set of parameters.


Eventually, this repo aims to construct "doppio", a parameterization of Ristretto that can be implemented using an embedded curve defined over the scalar field of the ristretto255 group. This provides a prime-order group that can be efficiently implemented inside a Bulletproof.

You can’t perform that action at this time.