Check that every private witness value that matters is constrained.
Confirm range checks for values that leave the field or map to application integers.
Verify public inputs cannot be reordered, omitted, replayed, or mis-bound.
Review trusted setup, proving key, verification key, and ceremony assumptions.
Treat verifier contracts as normal smart contracts with access, upgrade, and integration risks.
Educational resource only.
Links and listings are not endorsements by Raiders0786, DigiBastion,
maintainers, contributors, or this project. Verify third-party resources
before relying on them. Not legal, financial, investment, compliance, or
professional security advice.
Read the full disclaimer.