Laszlo Fazekas
Sep 26, 2022

--

The commitments are public, so you can build the Merkle root at any time, even years later. The history is only needed because the root can change after you sent the withdrawal transaction to the network and before it is executed. So, the Merkle tree with the commitments and the nullifier is public knowledge, and the secret knowledge is the Merkle proof of your commitment and the proof that your nullifier is generated from your commitment.

--

--

Laszlo Fazekas
Laszlo Fazekas

Responses (1)