Uploaded April 2026 | Updated September 2026, 3 days ago
Verifying ZK proofs on Bitcoin is awkward and tricky, but it is possible!
In Session 09 of Proof is in the Pudding, David Wong walks through the creative cryptographic workarounds that have emerged in response to Bitcoin’s design constraints.
He breaks down how techniques like circuit chunking, Lamport signatures, simulated covenants, and binary search dispute games make it possible to verify ZK proofs onchain, and how newer approaches like garbled circuits and witness encryption push more of the work offchain.
To join a future session of Proof is in the Pudding, please reach out to an Archetype team member!
📬 You can also receive invites to other Archetype events by signing up for our newsletter here: eepurl.com/iCApL2
—
⌛️ TIMESTAMPS
0:00 Intro
00:33 UTXO Model vs Account Model
03:08 Bitcoin Script Limitations
04:39 Verifying ZK proofs in Bitcoin script
06:39 ZK Bitcoin (MPC Approach)
08:51 BitVM: Optimistic Verification
12:05 Timelocks and Forcing Progress
13:57 Statelessness Problem
15:06 Lamport Signatures for State
19:41 Taproot
21:29 Simulated Covenants
26:20 BitVM Fraud Proof
33:44 BitVM 3, Hashlocks, and Garbled Circuits
47:01 Cut-and-Choose Security
48:53 Witness Encryption (BABE)
—
👋 FOLLOW US
David: https://x.com/cryptodavidw
zkSecurity: https://x.com/zksecurityXYZ
Archetype: https://x.com/archetypevc
🌐 LINKS
zkSecurity: https://www.zksecurity.xyz/
Archetype: https://www.archetype.fund/
—
DISCLAIMER: The information in this video is the opinion of the speaker(s) only and is for informational purposes only. You should not construe it as investment advice, tax advice, or legal advice, and it does not represent any entity's opinion but those of the speaker(s). For investment or legal advice, please seek a duly licensed professional.
Verifying ZK proofs on Bitcoin is awkward and tricky, but it is possible!
In Session 09 of Proof is in the Pudding, David Wong walks through the creative cryptographic workarounds that have emerged in response to Bitcoin’s design constraints.
He breaks down how techniques like circuit chunking, Lamport signatures, simulated covenants, and binary search dispute games make it possible to verify ZK proofs onchain, and how newer approaches like garbled circuits and witness encryption push more of the work offchain.
To join a future session of Proof is in the Pudding, please reach out to an Archetype team member!
📬 You can also receive invites to other Archetype events by signing up for our newsletter here: eepurl.com/iCApL2
—
⌛️ TIMESTAMPS
0:00 Intro
00:33 UTXO Model vs Account Model
03:08 Bitcoin Script Limitations
04:39 Verifying ZK proofs in Bitcoin script
06:39 ZK Bitcoin (MPC Approach)
08:51 BitVM: Optimistic Verification
12:05 Timelocks and Forcing Progress
13:57 Statelessness Problem
15:06 Lamport Signatures for State
19:41 Taproot
21:29 Simulated Covenants
26:20 BitVM Fraud Proof
33:44 BitVM 3, Hashlocks, and Garbled Circuits
47:01 Cut-and-Choose Security
48:53 Witness Encryption (BABE)
—
👋 FOLLOW US
David: https://x.com/cryptodavidw
zkSecurity: https://x.com/zksecurityXYZ
Archetype: https://x.com/archetypevc
🌐 LINKS
zkSecurity: https://www.zksecurity.xyz/
Archetype: https://www.archetype.fund/
—
DISCLAIMER: The information in this video is the opinion of the speaker(s) only and is for informational purposes only. You should not construe it as investment advice, tax advice, or legal advice, and it does not represent any entity's opinion but those of the speaker(s). For investment or legal advice, please seek a duly licensed professional.










