Closed junyechen1996 closed 6 months ago
It might still be a bit verbose, a lot of it is trying to illustrate how to generate joint randomness. Given how we introduce wraparound and verification joint randomness at the beginning (deriving the parts, and applying them to XOF to obtain the seed), maybe in the intro of sharding and preparation, we just say for example: "The Client uses the secret shares of the encoded gradient and range-checked norm to generate the wraparound joint randomness", and omit the details?
Squashed.
Reviewer's note: stacked PR on #67 .