Home

Awesome

baby_Jubjub supporting evidence

This repository contains supporting evidence that the twisted Edwards curve 168700.x^2 + y^2 = 1 + 168696.x^2.y^2 of rational points over GF(21888242871839275222246405745257275088548364400416034343698204186575808495617), also called babyJubJub based upone "Jubjub", satisfies the SafeCurves criteria.

The script verify.sage is based on this script from the SafeCurves site, modified by Daira Hopwood

Prerequisites:

Run sage verify.sage ., or ./run.sh to also print out the results.

You can generate the curve by running sage findCurve.sage 168698 This is the lowest A=168698 of a montgomary curve that statifies the critieria defined in ref7748

Note that the "rigidity" criterion cannot be checked automatically.