16 auto mock_commitment = Curve::AffineElement::one();
18 for (
size_t i = 0; i < num_commitments; ++i) {
19 for (
const fr& val : mock_commitment_frs) {
20 fields.emplace_back(val);
28 for (
size_t i = 0; i < num_elements; ++i) {
31 fields.insert(fields.end(), field_elements.begin(), field_elements.end());
40 typename PublicInputs::Builder
builder;
41 PublicInputs::add_default(
builder);
44 populate_field_elements<fr>(proof, acir_public_inputs_size);
47 for (
const auto& pub :
builder.public_inputs()) {
48 proof.emplace_back(
builder.get_variable(pub));
64 populate_field_elements<FF>(proof, TOTAL_SIZE_SUMCHECK_UNIVARIATES);
82 populate_field_elements<FF>(proof, Flavor::VIRTUAL_LOG_N);
85 populate_field_elements<FF>(proof, Flavor::NUM_ACCUMULATOR_EVALUATIONS);
88 HonkProof sumcheck_proof = create_mock_sumcheck_proof<Flavor>();
90 proof.insert(proof.end(), sumcheck_proof.begin(), sumcheck_proof.end());
97 HonkProof oink_proof = create_mock_oink_proof<Flavor, PublicInputs>(0);
98 HonkProof sumcheck_proof = create_mock_sumcheck_proof<Flavor>();
104 proof.reserve(oink_proof.size() + sumcheck_proof.size() + multilinear_batch_proof.size());
105 proof.insert(proof.end(), oink_proof.begin(), oink_proof.end());
106 proof.insert(proof.end(), sumcheck_proof.begin(), sumcheck_proof.end());
107 proof.insert(proof.end(), multilinear_batch_proof.begin(), multilinear_batch_proof.end());
120 const size_t NUM_GEMINI_FOLD_COMMITMENTS = Flavor::VIRTUAL_LOG_N - 1;
121 populate_field_elements_for_mock_commitments<Curve>(proof, NUM_GEMINI_FOLD_COMMITMENTS);
124 const size_t NUM_GEMINI_FOLD_EVALUATIONS = Flavor::VIRTUAL_LOG_N;
125 populate_field_elements<FF>(proof, NUM_GEMINI_FOLD_EVALUATIONS);
129 populate_field_elements<FF>(proof, 1);
132 populate_field_elements<FF>(proof, 1);
137 populate_field_elements<FF>(proof, NUM_SMALL_IPA_EVALUATIONS);
141 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
143 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
154 constexpr size_t const_proof_log_n = []() {
156 return MEGA_AVM_LOG_N;
158 return Flavor::VIRTUAL_LOG_N;
164 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
167 populate_field_elements<FF>(proof, 1);
172 populate_field_elements<FF>(proof, TOTAL_SIZE_SUMCHECK_UNIVARIATES);
179 populate_field_elements<FF>(proof, 1);
182 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
185 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
189 const size_t NUM_GEMINI_FOLD_COMMITMENTS = const_proof_log_n - 1;
190 populate_field_elements_for_mock_commitments<Curve>(proof, NUM_GEMINI_FOLD_COMMITMENTS);
193 const size_t NUM_GEMINI_FOLD_EVALUATIONS = const_proof_log_n;
194 populate_field_elements<FF>(proof, NUM_GEMINI_FOLD_EVALUATIONS);
198 populate_field_elements<FF>(proof, 1);
201 populate_field_elements<FF>(proof, 1);
206 populate_field_elements<FF>(proof, NUM_SMALL_IPA_EVALUATIONS);
210 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
212 populate_field_elements_for_mock_commitments<Curve>(proof, 1);
220 HonkProof oink_proof = create_mock_oink_proof<Flavor, PublicInputs>(acir_public_inputs_size);
221 HonkProof decider_proof = create_mock_decider_proof<Flavor>();
223 proof.reserve(oink_proof.size() + decider_proof.size());
224 proof.insert(proof.end(), oink_proof.begin(), oink_proof.end());
225 proof.insert(proof.end(), decider_proof.begin(), decider_proof.end());
227 if constexpr (PublicInputs::HasIPA) {
229 proof.insert(proof.end(), ipa_proof.begin(), ipa_proof.end());
236 size_t proof_length =
240 create_mock_oink_proof<bb::avm2::AvmFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
245 proof.reserve(proof_length);
246 proof.insert(proof.end(),
250 proof.insert(proof.end(), decider_proof.begin(), decider_proof.end());
253 proof.resize(proof_length, 0);
258template <
typename Flavor,
typename IO>
260 const size_t acir_public_inputs_size)
275 uint32_t a_idx =
builder.add_variable(
a);
276 uint32_t b_idx =
builder.add_variable(
b);
277 uint32_t c_idx =
builder.add_variable(c);
278 uint32_t d_idx =
builder.add_variable(d);
280 builder.create_big_add_gate({ a_idx, b_idx, c_idx, d_idx,
fr(1),
fr(1),
fr(1),
fr(-1),
fr(0) });
283 for (
size_t i = 0; i < acir_public_inputs_size; ++i) {
295 InnerProver prover(decider_pk,
vk);
296 auto honk_proof = prover.construct_proof();
297 return std::pair(honk_proof,
vk);
303 proof.reserve(MERGE_PROOF_SIZE);
305 uint32_t mock_shift_size = 5;
308 populate_field_elements<fr>(proof, 1,
fr{ mock_shift_size });
343 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
346 populate_field_elements<FF>(proof, 1);
349 for (
size_t idx = 0; idx < CONST_ECCVM_LOG_N; idx++) {
350 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
351 populate_field_elements<FF>(proof, 2);
358 populate_field_elements<FF>(proof, 1);
361 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
364 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
367 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof,
368 CONST_ECCVM_LOG_N - 1);
371 populate_field_elements<FF>(proof, CONST_ECCVM_LOG_N);
374 populate_field_elements<FF>(proof, NUM_SMALL_IPA_EVALUATIONS);
377 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
380 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
383 populate_field_elements<FF>(proof, 1);
386 populate_field_elements<FF>(proof, 1);
389 populate_field_elements<FF>(proof, 1);
392 populate_field_elements<FF>(proof, 1);
395 populate_field_elements<FF>(proof, 1);
398 populate_field_elements<FF>(proof, 1);
401 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
404 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
407 populate_field_elements<FF>(proof, 1);
410 populate_field_elements<FF>(proof, 1);
413 populate_field_elements<FF>(proof, 1);
416 populate_field_elements<FF>(proof, 1);
419 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
431 populate_field_elements_for_mock_commitments<curve::Grumpkin>(
432 proof, CONST_ECCVM_LOG_N + CONST_ECCVM_LOG_N);
435 populate_field_elements_for_mock_commitments<curve::Grumpkin>(proof, 1);
438 populate_field_elements<curve::BN254::BaseField>(proof, 1);
453 populate_field_elements_for_mock_commitments<Curve>(proof,
459 proof.insert(proof.end(), decider_proof.begin(), decider_proof.end());
471 create_mock_honk_proof<MegaZKFlavor, stdlib::recursion::honk::HidingKernelIO<Builder>>(acir_public_inputs_size);
477 ChonkProof chonk_proof{ mega_proof,
GoblinProof{ merge_proof, eccvm_proof, ipa_proof, translator_proof } };
478 proof = chonk_proof.to_field_elements();
483template <
typename Flavor,
class PublicInputs>
485 const size_t acir_public_inputs_size)
490 honk_verification_key->num_public_inputs = acir_public_inputs_size + PublicInputs::PUBLIC_INPUTS_SIZE;
491 honk_verification_key->pub_inputs_offset = NUM_ZERO_ROWS;
493 for (
auto& commitment : honk_verification_key->get_all()) {
494 commitment = curve::BN254::AffineElement::one();
497 return honk_verification_key;
503template HonkProof create_mock_oink_proof<MegaFlavor, stdlib::recursion::honk::HidingKernelIO<MegaCircuitBuilder>>(
506template HonkProof create_mock_oink_proof<UltraFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
508template HonkProof create_mock_oink_proof<UltraZKFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
510template HonkProof create_mock_oink_proof<UltraFlavor, stdlib::recursion::honk::DefaultIO<MegaCircuitBuilder>>(
512template HonkProof create_mock_oink_proof<UltraZKFlavor, stdlib::recursion::honk::DefaultIO<MegaCircuitBuilder>>(
516template HonkProof create_mock_oink_proof<avm2::AvmFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
529template HonkProof create_mock_honk_proof<MegaFlavor, stdlib::recursion::honk::HidingKernelIO<MegaCircuitBuilder>>(
532template HonkProof create_mock_honk_proof<UltraFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
534template HonkProof create_mock_honk_proof<UltraZKFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
536template HonkProof create_mock_honk_proof<UltraFlavor, stdlib::recursion::honk::DefaultIO<MegaCircuitBuilder>>(
538template HonkProof create_mock_honk_proof<UltraZKFlavor, stdlib::recursion::honk::DefaultIO<MegaCircuitBuilder>>(
543construct_arbitrary_valid_honk_proof_and_vk<UltraFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
546construct_arbitrary_valid_honk_proof_and_vk<UltraZKFlavor, stdlib::recursion::honk::DefaultIO<UltraCircuitBuilder>>(
558 const size_t,
const size_t);
561 const size_t,
const size_t);
583 const size_t,
const size_t);
#define BB_ASSERT_EQ(actual, expected,...)
#define BB_ASSERT_LTE(left, right,...)
#define AVM_V2_PROOF_LENGTH_IN_FIELDS_PADDED
static constexpr size_t PUBLIC_INPUTS_SIZE
typename Curve::ScalarField FF
static constexpr size_t NUM_ALL_ENTITIES
ECCVMCircuitBuilder CircuitBuilder
static constexpr size_t PROOF_LENGTH
static constexpr size_t NUM_WITNESS_ENTITIES
static std::vector< fr > serialize_to_fields(const T &val)
Conversion from transcript values to bb::frs.
MergeProver::MergeProof MergeProof
Child class of MegaFlavor that runs with ZK Sumcheck. See more in Sumcheck Outline.
Base Native verification key class.
A ProverInstance is normally constructed from a finalized circuit and it contains all the information...
static constexpr size_t NUM_WITNESS_ENTITIES
static constexpr size_t NUM_OP_QUEUE_WIRES
static constexpr size_t PROOF_LENGTH
Child class of UltraFlavor that runs with ZK Sumcheck.
static constexpr size_t COMPUTED_AVM_PROOF_LENGTH_IN_FIELDS
FixedVKAndHash_< PrecomputedEntities< Commitment >, FF, typename constraining::AvmHardCodedVKAndHash > VerificationKey
Verification key of the AVM. It is fixed and reconstructed from precomputed values.
static constexpr bool HasZK
static constexpr size_t NUM_WITNESS_ENTITIES
static constexpr size_t BATCHED_RELATION_PARTIAL_LENGTH
static constexpr size_t NUM_ALL_ENTITIES
AvmFlavorSettings::Curve Curve
Manages the data that is propagated on the public inputs of an application/function circuit.
Manages the data that is propagated on the public inputs of a hiding kernel circuit.
Manages the data that is propagated on the public inputs of a kernel circuit.
The data that is propagated on the public inputs of a rollup circuit.
Base class templates for structures that contain data parameterized by the fundamental polynomials of...
ProverInstance_< UltraKeccakFlavor > ProverInstance
constexpr T get_msb(const T in)
Entry point for Barretenberg command-line interface.
std::vector< fr > HonkProof
field< Bn254FrParams > fr
VerifierCommitmentKey< Curve > vk
constexpr decltype(auto) get(::tuplet::tuple< T... > &&t) noexcept
static field random_element(numeric::RNG *engine=nullptr) noexcept