- CUDA performance improvements. This results in about a 20-30% performance improvement. risc0#2054
- Add recursion preflight support for checked bytes/bigint risc0#1973
- Improve zero-knowledge property of the prover by increasing the amount of noise. We have used techniques described in this paper to strengthen the ZK property of the prover. See these docs for more information about zero knowledge and our proving system. This change results in a new set of control IDs. See the breaking changes section to learn more about this minor breaking change. risc0#1970
- Fix template generation for
--nostd
mode. risc0#2030 - Serializer: fix serialization of types such as
chronos::NaiveDate
that call intocollect_str
. risc0#2035 - Fix build output. The build output from host and guest compilations were intermingled. A fix has been made to clean up the output. risc0#1826
- Add "light builds". A new faster way to build guest programs intended for development only. This will allow the user to build the guest without linking the emitted ELF bytes. risc0#2166
- Add an optional embedded allocator to the zkVM guest. By default, the zkvm uses an allocator that does not deallocate heap memory. The embedded allocator deallocates and is useful for situations where the guest runs out of memory. If used, this allocator will result in an increased amount of cycles due to the extra operations necessary to deallocate memory. risc0#2174
- Add experimental support for
sys_fork
. This syscall allows the zkVM to execute unconstrained code. The RISC-V code executed within this system call will not be encoded as a part of the trace execution. This can be used to implement hints and advice. For example, the square root of two can be computed usingsys_fork
and the solution can be verified in the guest by checking that the square of this solution is equal to two. risc0#2084 - Use
stability::unstable
to mark new experimental APIs. risc0#2182 - Add unstable
env::read_frame()
andenv::read_framed()
which improves cycle counts when reading the input from the guest. risc0#2182 - Re-vamped rzup. The rzup utility is used to install toolchains and extensions. The first implementation was a simple bash script. This has been replaced by a more robust rust implementation. risc0#1961
- Enable GPU proving by default on macOS. Previously, we have allowed the user to prove on CPU or GPU. This improves user experience by shipping a GPU-enabled r0vm server by default. risc0#2092
- Added an example that showcases how the
c-kzg
crate can be run in the zkVM. risc0#2045 - Added an example that uses C as the guest code. This demonstrates how a user can use C to write an entire guest program without rust. risc0#1898
- Added a simple prover service example. This is a demonstration of how the public API can be used to build a simple proving service. risc0#2113
- Added the ability to serialize Receipts using the borsh serialization crate. risc0#2184
- Due to the zero-knowledge change above, receipts generated by zkVM 1.0.x cannot be verified with IDs from 1.1.x and verifiers using control IDs from 1.0.x are not compatible with 1.1.x. To avoid this control ID mismatch, users who are verifying proofs must ensure that the version of their verifier must match the version of their prover. For example, if a user is verifying proofs that come from
risc0-zvkvm
1.1.x, they must ensure that the verifier they are using fromrisc0-zkvm
version 1.1.x. If they are verifying proofs that come fromrisc0-zkvm
version 1.0.x, they must ensure that the verifier is also fromrisc0-zkvm
1.1.x. Users of bonsai must ensure that their local verifier matches the version used by bonsai. For more information on why this change occurred, see the Fixes section.
- Change the host to validate the guest buffer address if its length is non-zero. This fixes an issue that occurs when building the guest with Rust toolchain version 1.79.0.
- Apply a workaround for LLVM compiler bug for rv32im to ensure that lower bits of addresses are preserved.
- Fix panic by remove page_size parameter from serialized MemoryImage
- Fix client/server version compatibility.
- Improve executor performance by 2x.
bonsai-sdk
: enable execute-only mode. This will run the guest program but will not produce a receipt. This can be used to quickly measure the complexity of the guest program.bonsai-sdk
: simplify the SDK by using themaybe_async
crate.
- Fix
no_std
starter template. - Fix serialization of structs such as
NaiveDate
which calls intocollect_str
.
- Fix issue with building CUDA kernels.
- Witness generation has been parallelized by adding another preflight pass.
- Improved performance by minimizing data transfers when constructing merkle proofs.
- Parallelized
step_verify_bytes
function. - Changed
eval_check
to use precomputed powers for poly_mix.
- Fixed a bug with an unaligned short read.
- Commit globals in Fiat-Shamir transcript.
- Fixed an undefined behavior warning generated by rust 1.77.2 in guest.
- Addressed security vulnerabilities in the rv32im circuit.
- Fix clippy warnings in all published crates.
- Fix build issues arising from an undefined
_end
symbol.
- Generalized proof composition.
- Benchmarks have been improved.
- A new web app that can be used to display datasheets, prover benchmarks, application benchmarks and supported crates.
- Added the ability to compile Rust crates that bind to C code.
- Added a new
cargo risczero deploy
command to deploy ELF binaries to bonsai. ProverOpts
now has a newReceiptKind
field. This is used to select the minimum compression level of receipt to be generated by theProver
andProverServer
traits. The kinds include composite (a receipt containing a vector of segment receipts), succinct (a receipt where all segments have been compressed into a single receipt via the lift and join recursion programs), and compact (a snark receipt generated by compressing a succinct receipt using a groth16 prover. This used for on-chain proving).- A
compress
function has been added to theProver
trait. This allows the users to more easily change receipts to a different kind in the host. - Rust's
alloc_zeroed
function has been optimized in the guest. - Export
NullSegmentRef
for use by host code. - Added a soundness error calculator.
- Bonsai SDK: added a method used to download receipts.
- Bonsai SDK: improved error messages.
- Bonsai SDK: added a new API to stop a proving session in Bonsai.
-
Change sys_cycle_count to return a
u64
instead of u32. -
The
Prover
trait'sprove()
function now returns aProveInfo
. Thisstruct
contains the receipt as well as cycle and segment information gathered during the proof generation. The following is the definition ofProveInfo
andSessionStats
structs:
/// Information returned by the prover including receipt as well as other information useful for debugging
pub struct ProveInfo {
/// receipt from the computation
pub receipt: Receipt,
/// stats about cycle counts of the execution
pub stats: SessionStats,
}
/// Struct containing information about a prover's cycle count after running the guest program
pub struct SessionStats {
/// Count of segments in this proof request
pub segments: usize,
/// Total cycles run within guest
pub total_cycles: u64,
/// User cycles run within guest
pub user_cycles: u64,
}
For those upgrading from v0.21.0, the following code change is necessary on the host side to retrieve the receipt.
- let receipt = prover.prove(env, BEVY_GUEST_ELF).unwrap();
+ let receipt = prover.prove(env, BEVY_GUEST_ELF).unwrap().receipt;
-
Fix an issue where the temporary directory is not being removed when the
Session
goes out of scope. This helps prevent the depletion of disk space. -
Verification of groth16 receipts in rust that are compatible with Bonsai
- Add an improved Poseidon2 hashing function that replaces Poseidon for recursive proofs.
- For recursive proofs, the Poseidon hash function is replaced by the Poseidon2 hash function. Users can still create receipts using the older Poseidon hash function but these receipts will not be usable by Bonsai or any proof composition or rollup use cases.
- Revert change to
Prover::prove
to return aSuccinctReceipt
. This prevents a performance regression for default use cases.
- Restrict software ecall handler address range
- Fix argument handling in client/server mode
- Change jal to call in zkVM entrypoint #1257
- Improve ZKR zip file handling
- Support for Proof Composition
- Add execution statistics when using
RUST_LOG=info
- Add XGBoost example using Spice AI query to train a model
- Improve CUDA performance by integrating sppark
- Add Poseidon2 support to CUDA backend
- Support for verifying Groth16 proofs
- Add exponential backoff to bonsai proof polling
- add
getrandom
feature to toggle getrandom in the guest - Adjust
Prover::prove
to return aSuccinctReceipt
by default
- Rename
ReceiptMetadata
toReceiptClaim
- Drop
MemoryImage
from the public API - Drop _elf suffix from API. For example,
Prover::prove_elf
is renamedProver::prove
.