noir icon indicating copy to clipboard operation
noir copied to clipboard

Document HashToField security level

Open kevaundray opened this issue 4 years ago • 1 comments

The OPCODE HashToField requires that the hash function heuristically behaves as a random oracle.

Kobi Gurkan pointed out that the security level should also be documented.

We can either:

  • Accept a min security parameter . This would allow more flexibility if the underlying proving system can provide less than 128 bits and you do not need it.

  • Document ACIR indicating that we always require 128 bit security.

kevaundray avatar Mar 15 '21 11:03 kevaundray

This will be left open until there is a specific place to document opcode

kevaundray avatar Apr 01 '21 14:04 kevaundray