# Airbender Markdown version of https://l2beat.com/zk-catalog/airbender ## Summary - Creator: Matter Labs - Total Value Secured: $12.21 M (+6.37% compared to seven days ago) - Trusted setups for Bellman (Plonk): - Aztec Ignition, risk green (lowest risk) per the [Trusted Setups Risk Framework](https://forum.l2beat.com/t/the-trusted-setups-framework-for-zk-catalog/381): Aztec Ignition is a trusted setup ceremony that was run by Aztec for KZG commitment over BN254 curve in 2019. It included 176 participants and was publicly open for participation. - Used in: [ADI Chain](https://l2beat.com/layer2s/projects/adi) - Verifiers: 1 not verified - Trusted setups for Zksync (Fflonk): - Aztec Ignition, risk green (lowest risk) per the [Trusted Setups Risk Framework](https://forum.l2beat.com/t/the-trusted-setups-framework-for-zk-catalog/381): Aztec Ignition is a trusted setup ceremony that was run by Aztec for KZG commitment over BN254 curve in 2019. It included 176 participants and was publicly open for participation. - Used in: none - Verifiers: none - zkVM: Airbender (STARK), RISC-V 32bit (ISA), Mersenne31 (Field) - Final wrap: Zksync (Fflonk), BN254 (curve) ### About Airbender is the latest prover by Matter Labs. It proves RISC-V programs. ### Links - Website: https://www.zksync.io/airbender - Docs: https://docs.zksync.io/zksync-protocol/zksync-airbender/overview, https://github.com/matter-labs/zksync-airbender/blob/main/docs/README.md - Repository: https://github.com/matter-labs/zksync-airbender/tree/main ## Value Secured The interactive TVS chart is shown on [the HTML page](https://l2beat.com/zk-catalog/airbender#tvs). ## Proof System ### Description Airbender is the most advanced zkVM developed by Matter Labs. It operates on RISC-V ISA and is designed to prove state transition function of [zk stack](https://zkstack.io) chains in combination with [ZKsync OS](https://github.com/matter-labs/zksync-os), but also more general RISC-V programs. Airbender proofs could be [wrapped into Fflonk SNARK](https://github.com/matter-labs/zkos-wrapper) for efficient onchain verification. Airbender initial release [targets 81 bits of security](https://x.com/eth_proofs/status/1942468407896543694). ### Proof system Airbender implements a rather standard zkVM: AIR constraints, [DEEP-FRI](https://eprint.iacr.org/2019/336) polynomial testing, RISC-V instructions with the program being stored in read-only memory and accessed by lookup arguments, recursive proving. Many parts of the stack are optimized for speed and efficiency, including a small Mersenne31 field over which the computation trace is generated and a simple degree 2 AIR constraints. Airbender prover could also be run in application mode without signed multiplication and division operations, thus reducing circuit complexity. #### Recursion circuits Airbender targets proving batches of size 2**22 (~4 M) clock cycles. The proofs of such batches are pairwise recursively aggregated using zkVM in recursion mode. For onchain verification, the final Airbender STARK is [compressed using Boojum compressor](https://github.com/matter-labs/zkos-wrapper) and then wrapped into a Fflonk SNARK with KZG. The KZG commitment is done over BN254 curve and it uses Aztec Ignition trusted setup ceremony, see [below](https://l2beat.com/zk-catalog/airbender#trusted-setups) for more details. ## Trusted Setups Risk levels follow the [Trusted Setups Risk Framework](https://forum.l2beat.com/t/the-trusted-setups-framework-for-zk-catalog/381). Yellow (medium risk): all contributions are published and the final output can be verified, the ceremony client is open source, there were at least 30 contributions, participation was open to the public and announced, and participants are publicly identified. Green (lowest risk): everything required for yellow, with at least 150 contributions. Red (highest risk): at least one requirement for yellow is not met. N/A: the proof system needs no trusted setup. ### Aztec Ignition - Risk: green (lowest risk) - Proof systems: Bellman (Plonk), Zksync (Fflonk) Aztec Ignition is a trusted setup ceremony for KZG commitments over BN254 curve that was run by Aztec for KZG commitment over BN254 curve in 2019. It included 176 participants and was publicly open for participation. - Github repo to download and verify the ceremony artifacts: [https://github.com/AztecProtocol/ignition-verification](https://github.com/AztecProtocol/ignition-verification). - Github repo with instructions for ceremony participants: [https://github.com/AztecProtocol/Setup](https://github.com/AztecProtocol/Setup). - Ceremony announcement with a call to participate: [https://aztec.network/blog/announcing-ignition](https://aztec.network/blog/announcing-ignition). ## Verifier IDs List of different onchain verifiers for this proving system. Unique ID distinguishes different deployments of the same verifier from different verifiers (e.g. different versions). ### Plonk: Bellman Bellman Rust library for Plonk proving system, originally developed for ZCash. #### Airbender Plonk Adi v30.2 verifier - Verifier ID: `0x194abd368017773c8a8b62fdee6885816bd30110ff293508f9ec9b58c8c10982` - Verification: not verified - Used in: [ADI Chain](https://l2beat.com/layer2s/projects/adi) **Known deployments** - [0xC1288A84C5b2c93Ed4bF712fF4Bb96D862b32aa9](https://etherscan.io/address/0xC1288A84C5b2c93Ed4bF712fF4Bb96D862b32aa9#code) on Ethereum, used in: [ADI Chain](https://l2beat.com/layer2s/projects/adi)