Closed 0xbok closed 10 months ago
If c overflows the Curve order, the value returned by Rust impls differ from js and circom versions.
c
Rust impls return c % Curve.n, js and circom return the plain c.
c % Curve.n
Feels obvious, but let me double check: we want it returned wrapped, right? Like currently in Rust done.
Wrapped seems good!
If
c
overflows the Curve order, the value returned by Rust impls differ from js and circom versions.Rust impls return
c % Curve.n
, js and circom return the plainc
.