
About this episode
In this episode, Anna and Nico speak with Abhi Shelat and Matteo Frigo from Google about their work integrating zero-knowledge proofs into the Google Wallet. They discuss the technical decisions behind the Anonymous Credentials for ECDSA system, including the challenge of designing a proof system where proving must be efficient enough to run on the client device in a large-scale consumer application, and how they design a system using sumcheck and Ligero to overcome NTT issues.
The conversation also touches on the process of standardization, the return of ZK to its privacy roots, and the broader significance of seeing advanced cryptography adopted by a major tech company outside the blockchain space.
Links:
---------------
---------------
--------------- **If you like what we do:** * Find all our links here! @ZeroKnowledge | Linktree * Subscribe to our podcast newsletter * Follow us on Twitter @zeroknowledgefm * Join us on Telegram * Catch us on YouTube **Support the show:** * Patreon * ETH - Donation address * BTC - Donation address * SOL - Donation address Read transcript
- Episode 303: A Dive into Binius with Jim Posen
- Anonymous credentials from ECDSA
- libZK: a zero-knowledge proof library
- European Digital Identity
- FFTW
- Doubly-Efficient zkSNARKs Without Trusted Setup
- Ligero: Lightweight Sublinear Arguments Without a Trusted Setup
- Everything provable is provable in zero-knowledge
- Circle STARKs
- Highlights of libZK, the Google Wallet ZKP
- Parallel prefix
---------------
- Register for ZK Hack Berlin happening 20 - 22 June!
---------------
- Boundless is a universal zero-knowledge protocol developed by RISC Zero, that lets anyone access abundant verifiable compute, regardless of the blockchain they are using. Learn more about Boundless at beboundless.xyz
--------------- **If you like what we do:** * Find all our links here! @ZeroKnowledge | Linktree * Subscribe to our podcast newsletter * Follow us on Twitter @zeroknowledgefm * Join us on Telegram * Catch us on YouTube **Support the show:** * Patreon * ETH - Donation address * BTC - Donation address * SOL - Donation address Read transcript
Get every episode summarized
Each time Zero Knowledge publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Zero Knowledge

The Evolution from ZKP2P to Peer with Richard Liang
Zero Knowledge
Sep 9, 202646:00completed

Minimmit, Multimmit and the New Consensus Frontier with Patrick O'Grady
Zero Knowledge
Aug 5, 20261:12:01pending

Private Information Retrieval (PIR) with Alex Hoover
Zero Knowledge
Jul 29, 20261:04:13pending

Alex Ozdemir on where Theorem Provers and ZK meet
Zero Knowledge
Jul 15, 20261:01:57pending