Project Information
CATEGORY
Zero-knowledge
NETWORK
Ethereum
WEBSITE
https://www.succinct.xyz/
DESCRIPTION
From October 25 to December 10, Succinct Labs engaged Veridise to review the security of the circom circuits used in the implementation of Telepathy, the first decentralized and permissionless interoperability layer for Ethereum. The review covered all circuits implemented by Succinct Labs engineers as well as circuits from the circom-pairing library, which was heavily utilized within Telepathy. Veridise conducted the assessment over 25 person-weeks, with 5 engineers reviewing code over 5 weeks. The auditing strategy involved a tool-assisted analysis of the source code performed by Veridise engineers as well as extensive manual auditing.
Audit Report
SCOPE
This audit reviewed the circom circuits of Telepathy, including the circuits from the circom-pairing library. As such, Veridise auditors first inspected the provided tests to better understand the desired behavior of the provided circuits at a more granular level. They then began a multi-week manual audit of the code assisted by both static analyzers and automated testing.
In terms of the audit, the key components include the following:
- The Telepathy protocol circuits.
- Circuits in the circom-pairing library used by Telepathy.