Loading video...

Video Failed to Load

Go Home

We made a bit of history at BTC Prague. The first bitcoin payments using zero-knowledge proofs were sent over Lightning. Discussed by Satoshi 2010, ZK can improve bitcoin privacy. Our experiment was the first real-world demo to showcase how:

13,369 views • 3 months ago •via X (Twitter)

18 Comments

BitBox's profile picture
BitBox3 months ago

@BTCPrague 0:30

ian's profile picture
ian3 months ago

@BTCPrague that you???

BitBox's profile picture
BitBox3 months ago

@BTCPrague Possibly

VLAD HOSTS THE BEST PODCAST IN BITCOIN's profile picture
VLAD HOSTS THE BEST PODCAST IN BITCOIN3 months ago

@BTCPrague You can only put so much lipstick on the dying Lightning cow

ian's profile picture
ian3 months ago

Background: we gave away free sats to bitcoiners at @BTCPrague using the Zerosats wallet. Users claimed their funds through a payment link and spent them as they would with any other bitcoin payments app.

ian's profile picture
ian3 months ago

Under the hood, every transaction is proven in zero-knowledge. Users prove they have the ability to spend a UTXO, and the network verifies the proofs. Only hashes are recorded publicly on the ZK network. Amounts and individual identities are hidden from any external observer.

ian's profile picture
ian3 months ago

The app’s Lightning integration is made possible by our HTLC circuit. Users can prove in zero-knowledge that they have locked funds into an HTLC escrow contract. Gateway pays invoice? They claim funds. They don’t? User claims after a timelock.

ian's profile picture
ian3 months ago

We will be running this network for another 2 months for testing and demonstration purposes. Public access will be enabled soon. You can read more about the tech, its tradeoffs, and its privacy guarantees here:

Isabel Foxen Duke⚡️'s profile picture
Isabel Foxen Duke⚡️3 months ago

@BTCPrague congrats!!

ian's profile picture
ian3 months ago

@BTCPrague 🧡

James Scaur 👾's profile picture
James Scaur 👾3 months ago

@BTCPrague 🔥🔥🔥

ian's profile picture
ian3 months ago

@BTCPrague 🤝

FJ's profile picture
FJ2 months ago

@lxdev_ @BTCPrague Your analysts as Social Capital should review this @chamath

Jan's profile picture
Jan3 months ago

@stutxo @BTCPrague Cool

ian's profile picture
ian3 months ago

@stutxo @BTCPrague 🤝

Uyiosa ◉'s profile picture
Uyiosa ◉3 months ago

@BTCPrague Really cool stuff! Massive unlock would be sdk for btc wallets to adopt

Private by default Wallet's profile picture
Private by default Wallet3 months ago

@BTCPrague Cool demo. Bitcoin's base layer stays transparent though. That's why Beam's approach matters - protocol-level privacy means everything's encrypted by default.

Bitcoin Board's profile picture
Bitcoin Board2 months ago

@BTCPrague zero knowledge and lightning? finally some real privacy play not just hype, actually working impressive stuff

Related Videos

BITCOIN RAILS EPISODE #24: The History of Zero-Knowledge Proofs | with ZK “Godfather” Eli Ben Sasson In 2013, computer science professor Eli Ben-Sasson | Starknet.io presented his research on zero-knowledge proofs at a small Bitcoin conference outside of Standford University. The presentation immediately sparked interest from Bitcoin Core developer Greg Maxwell—leading Eli into over a decade of sustained work advancing ZK-based solutions for blockchain scalability and privacy. Today, zero-knowledge proofs are widely considered some of the most powerful and promising cryptographic primitives for scaling—with their full potential for Bitcoin simmering just beneath the surface of active development. This episode shares Eli’s early discussions of ZKPs for scaling, the use of proofs in privacy-enhancing technologies like Zcash, the explosion of ZKPs for Layer 2s on Ethereum… and his recent return to exploring ZKPs for Bitcoin. As always, you can view this episode on YouTube or Spotify via the linktree in my bio—YouTube link in comments as well. This episode is powered by Best In Slot—the leading API for Ordinals and BRC20 data aggregation and indexing. TIMESTAMPS: 00:51 Eli Ben-Sasson: Godfather of ZKPs 02:15 Revealing Proof Research to Bitcoiners 04:15 Meeting Greg Maxwell; Mike Hearn 06:10 ZCash: Bringing ZK Based Privacy for Crypto 07:05 SNARKs and STARKs Explained 08:10 Would Satoshi Approve of Bitcoin STARKs? 11:41 ZCash Privacy Versus Monero 13:45 When did the ZKP era begin on Ethereum? 16:34 What’s different about ZK STARKs? 18:40 Vitalik and STARKs on Ethereum with Starkware 21:10 Academics finally appreciating STARKs 23:18 Healthy competition in the ZK industry 24:20 What is Starknet? 25:50 What is an L2, in Eli’s view? 27:20 Focustree, an app on Starknet 30:00 How Eli arrived at Bitcoin Season 2 34:45 When did ZK look realistic for Bitcoin? 36:55 Eli first heard about OP_CAT 39:30 Why Lightning isn’t good enough 40:30 When did Starkware start focusing on OP_CAT? 44:20 Runes bridge to Starknet! 46:00 Expanding Starknet staking to BTC 48:20 Why is OP_CAT “barely enough” for Bitcoin L2s? 51:00 The real reason people oppose OP_CAT, per Eli 53:00 The risks of *not* changing Bitcoin 55:35 The weakness of Bitcoin’s lack of governance 01:00:15 We will need to softfork for quantum!

Isabel Foxen Duke⚡️

46,022 views • 1 year ago

BITCOIN RAILS #69: ZERO-KNOWLEDGE PROOFS FOR POST-QUANTUM BITCOIN | with Benedikt Bünz 🔗 YOUTUBE: 🌿 SPOTIFY: While many Bitcoiners remain hopeful the network will embrace zero-knowledge proofs for protocol-level use cases, practical adoption has remained limited outside of BitVM and a handful of experimental proposals. Most of the world’s ZKP research has circled around Ethereum and other ecosystems, where significant resources have been dedicated to advancing these systems, particularly for scaling and privacy applications. One of the most notable contributors to this research is Benedikt Bünz ☕️ — professor of cryptography at NYU and collaborator of Dan Boneh, who together inarguably form one of the strongest blockchain-applied cryptography teams in the world. The pair recently announced they’ll be leading the new post-quantum cryptography unit localhost research — the first dedicated PQ research effort within a major Bitcoin development organization. With Benedikt leading the charge on the use of zero-knowledge proofs for post-quantum mitigation, the question emerges: will the post-quantum transition be the catalyst to finally bring zero-knowledge proofs to Bitcoin's core protocol? In more detail, Benedikt and I discuss: - Why ZKPs haven’t been widely adopted by the Bitcoin technical community — and why the threat of quantum computers may change that posture going forward - How ZKPs could be used for signature batching to address larger post-quantum signatures in Bitcoin’s post-quantum era - Why Bitcoiners will likely prioritize hash-based signatures as an initial post-quantum scheme — rather than more efficient but less proven alternatives (e.g., lattice-based) - How ZKPs have evolved over the last decade and may finally be ready for Bitcoin’s strict requirements around trust assumptions - Why Benedikt and Dan are teaming up with localhost research to create the first post-quantum cryptography unit within a major Bitcoin development organization + what they hope to accomplish This episode of Bitcoin Rails is brought to you by: LayerTwo Labs LayerTwo Labs — developing research, software, and technologies for scaling Bitcoin via the integration of Drivechains (BIP 300/301) Hashi on Sui — a primitive for executing Bitcoin DeFi transactions, without having to trust a federated bridge or other centralized entity BitBox BitBox — an open-source Bitcoin-only hardware wallet, with smooth UX and no compromises on security. Check out Bitbox [dot] swiss and use code BITCOINRAILS to get a discount TIMESTAMPS: 00:00 — Intro 00:22 — Benedikt's background 04:10 — How Benedikt got into Bitcoin and cryptography 07:42 — First ZK project: proving exchange solvency after Mt. Gox 16:01 — ZK proofs explained 27:43 — How security gets popular & ZK proofs in Bitcoin 35:49 — Other applications of ZK proofs for Bitcoin 40:15 — Why ZK proofs haven't been adopted in Bitcoin 50:46 — Why the Bitcoin post-quantum transition needs ZK proofs 01:07:00 — Cryptographic agility and why lattices win 01:18:00 — The size problem and how SNARKs solve it 01:33:57 — Proving a Bitcoin block in a laptop in 1.5 seconds 01:37:12 — Bitcoin as the primary quantum target 01:40:47 — ZK proofs for seed phrase recovery

Isabel Foxen Duke⚡️

19,872 views • 2 months ago

There have been whispers of Bitcoin hodlers swapping BTC for Zcash 🤔🔏 Why? Because some Bitcoiners want to be able to transact with more privacy. BUT Bitcoin can still have NATIVE privacy and scale. Eli Ben-Sasson | Starknet.io explains how ZK-proofs and OP_CAT hold the key 🗝️👇 We caught up with the 'Godfather of ZK' on Cointelegraph's Chain Reaction show this week for a deep dive into the promise of zero-knowledge technology for Bitcoin and beyond. Ben-Sasson, who co-authored the ZeroCash protocol whitepaper and helped found Zcash 🛡️, said that Bitcoin can still have native privacy and infinite scalability if developers can agree to reinstate OP_CAT, a Satoshi-era OP_Code that Bitcoin's creator disabled in 2010. It turns out that Zcash's resurgence in 2025 could be the catalyst for Bitcoin's privacy push. "I hope that one consequence of this would be that the Bitcoin community becomes more open to things like OP_CAT and OP_STARK so that it can have post-quantum security, best privacy, best scale and programmability for this beautiful hard asset that is Bitcoin." Ben-Sasson said. "The technology is ready. All you need is a soft fork adding nine lines of code that Satoshi actually introduced. It's called OP_CAT. It's very, very easy. If there's a will, there's a way. In this case, it's a very simple way to give all of that goodness to Bitcoin itself." You can watch our full conversation with Ben-Sasson in the 🧵👀📺

Gareth Jenkinson

32,003 views • 10 months ago