If a signing party includes a small-order component in their share such that ak is generated with a small-order component, then every rk (for every transaction signed with that ak) will have the same small-order component, enabling those transactions to be linked (to within 1-in-7, but that is still a big hit to spend unlinkability).
If a signing party includes a small-order component in their share such that
ak
is generated with a small-order component, then everyrk
(for every transaction signed with thatak
) will have the same small-order component, enabling those transactions to be linked (to within 1-in-7, but that is still a big hit to spend unlinkability).