Proposal: OP_STARK_VERIFY - Native STARK Proof Verification in Bitcoin Script

How does this make a covenant? Generally one would expect that the shape of the transaction is somehow restricted by the ZKP. This either implies some form of introspection or the STARK verifier should be able to receive a signature as additional input.

1 Like