@techreport{google-cfrg-libzk-03, number = {draft-google-cfrg-libzk-03}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-google-cfrg-libzk/03/}, author = {Matteo Frigo and abhi shelat}, title = {{Longfellow ZK}}, pagetotal = 79, year = 2026, month = sep, day = 23, abstract = {This document defines an algorithm for generating and verifying a succinct non-interactive zero-knowledge argument that for a given input x and a circuit C, there exists a witness w, such that C(x,w) evaluates to 0. The technique here combines the MPC-in-the-head approach for constructing ZK arguments described in Ligero {[}ligero{]} with a verifiable computation protocol based on sumcheck for proving that C(x,w)=0.}, }