Do we have ZKP for nostr lists (assumedly of pockets)? Like private proof of inclusion in a given pubkey list? You can see the list but you can check that my pubkey is in a given list without knowing my pubkey? And is there some interaction with bloom filters for ZKPs? Like a proof on the data provider's side to show they didn't cheat or are notnwitholding things. Perhaps relays could do such a thing. 🤔

#asknostr

Reply to this note

Please Login to reply.

Discussion

As long as we're talking hundreds, not millions of keys, the more basic ring signature designs should work fine. It sounds like you don't even need linkability, so e.g Abe Ohkubo Suzuki 2002.

For huge keysets see Curve Trees which fit very nicely with bip340 keys.