For the first time in 400 years, civilizations have a new trust primitive that does not require a central authority. Zero-knowledge proofs let you verify a fact without learning its content — and let a million strangers coordinate without trusting each other. 四百年来首次,文明拥有了一种无须中央权威的全新信任原语。零知识证明让你在不知晓其内容的前提下验证一个事实——并让百万陌生人在彼此不信任的情况下协作。
This is not a crypto-marketing site. It is a structured map of the math, the trust evolution, the seven competing ideologies, and the futures that follow if any of them succeed. A companion site to Psy Protocol and to the parallel essay at zk-civilization. 这不是一个加密营销网站。它是一张关于数学、信任演化、七种相互竞争意识形态、以及若其中任一成功之后随之而来的未来的结构化地图。是 Psy 协议与平行篇章 zk-civilization 的伴随站点。
A prover convinces a verifier that a public statement x is true, by exhibiting knowledge of a private witness w such that the circuit C(x, w) = 1. The proof π is short, uniform, and reveals nothing about w. With recursion, π can verify another π — collapsing arbitrary computation into a single object.证明者向验证者证明:公开命题 x 为真——通过对私有见证 w(使电路 C(x, w) = 1)的知识。证明 π 短小、统一、不泄露任何关于 w 的信息。借助递归,π 可验证另一个 π——将任意计算坍缩为单一对象。
Trusted-setup, pairing-based curves. ~200-byte proofs verifiable in milliseconds. Powers Zcash, Polygon zkEVM, Aztec.
需可信启动,基于配对曲线。证明仅约 200 字节,毫秒级可验。驱动 Zcash、Polygon zkEVM、Aztec。
No trusted setup. Larger proofs (50–200 KB) but transparent and quantum-resistant. The substrate of StarkNet, RISC Zero, Plonky2.
无须可信启动。证明较大(50—200 KB),但透明且抗量子。是 StarkNet、RISC Zero、Plonky2 的基质。
One trusted-setup serves all circuits. Custom gates make domain-specific provers fast. The dominant arithmetisation of the late 2020s.
一次可信启动服务所有电路。自定义门让特定领域的证明者高效。是 2020 年代后期的主导算术化方案。
Plonky2, Halo2, Nova, ProtoStar. The economic miracle: an entire chain of computation can be folded into one constant-size π — the technical substrate of every civilization-scale ZK system.
Plonky2、Halo2、Nova、ProtoStar。经济奇迹:整条计算链可被折叠为单一常数大小的 π——这是每个文明级 ZK 系统的技术基质。
Each rung keeps the previous one running underneath. We still trust kin and gods. The new rung adds to the stack — and exposes failure modes the previous rungs could not anticipate.每一级都保留下一级在底部运行。我们仍信任血亲与神明。新一级只是为堆栈增层——并暴露下层未曾预见的新失败模式。
A consensus algorithm is a procedure for letting a global anonymous network agree on a single ordering of events. Each makes a different trade between latency, security and decentralisation. ZK changes the picture: instead of debating who is right, the network checks the proof.共识算法让全球匿名网络对事件顺序达成一致。各算法在延迟、安全与去中心化之间作不同权衡。ZK 改变了图景:网络不再争论谁对,而是直接验证证明。
| System系统 | Sybil basis抗女巫基础 | Finality最终性 | ZK postureZK 取向 |
|---|
Privacy without verifiability is hiding. Verifiability without privacy is surveillance. ZK is the first technology that gives both at once — forcing every state, platform and individual to choose what they will carry.无可验证性的隐私是躲藏。无隐私的可验证是监视。ZK 是首个同时给予二者的技术——并迫使每个国家、平台与个人选择'携带什么'。
Prove you are over 18 without revealing your birth date. Prove you are a citizen without revealing which one. Prove you have funds without revealing how many. The unit-bundle of identity unbundles.
证明已成年而不暴露生日。证明是公民而不暴露国籍。证明有资金而不暴露金额。身份的整包被拆散。
A transaction signed by a private key cannot be unsigned by an institution. A node can be cut off; the math cannot be repealed. The substrate-level guarantee.
由私钥签名的交易,无法被机构反签。节点可被切断;数学无法被废止。这是基质层的保证。
Public ledgers like Bitcoin's are pseudonymous, not anonymous. Every transaction is permanent and globally visible. ZK is what turns a transparent ledger into a verifiable but private one.
比特币这类公链是化名,而非匿名。每笔交易都永久且全球可见。ZK 将透明账本转化为可验证但隐私的账本。
A cryptographic identity that travels with you between protocols, jurisdictions, platforms. Reputation, attestation, voting power, credentials become portable — and the nation-state becomes one provider among many.
一种随你在协议、法域、平台间穿行的密码学身份。声誉、属性证明、投票权、凭证皆可携带——民族国家由此成为众多供应商之一。
The math is one. The ideologies are many. Each narrative pulls ZK infrastructure toward a different political end-state. They are not equally compatible.数学只有一种,意识形态却有许多。每种叙事将 ZK 基础设施拉向不同的政治终态。它们之间未必相容。
A protocol is half technology, half subculture. The culture is what survives a fork — the memes, the disciplines, the unwritten rules of who builds and who only talks. Without these, the math is just a paper.协议有一半是技术、一半是亚文化。文化是分叉后仍存留之物——迷因、规训、关于'谁在建造、谁只在说话'的不成文规则。无此者,数学不过是一篇论文。
First-generation ZK proves one transaction. Second-generation ZK proves one batch. Third-generation systems — Psy Protocol, =nil; Foundation's proof market, Aligned Layer, Succinct's proof network — aggregate proofs across chains, applications, and entire ecosystems into a single recursive object.第一代 ZK 证明一笔交易。第二代 ZK 证明一批交易。第三代系统——Psy 协议、=nil; 基金会的证明市场、Aligned Layer、Succinct 证明网络——将跨链、跨应用、跨整个生态的证明聚合为单一递归对象。
Provers compete to prove batches. A separate aggregator collects their proofs, verifies them, and recursively bundles all into one final π. The L1 verifies one proof; the world's worth of computation rides on it.
证明者竞争生成批次证明。独立聚合者收集它们、验证后再递归打包为单一最终 π。L1 仅验证一份证明;整个世界量级的计算搭载其上。
Anyone with a GPU can earn from proving. No permissioned operator. Slashing for invalid proofs. A market that prices proof generation honestly — provided it does not centralise into a few cluster-owners.
任何拥有 GPU 的人皆可通过证明赚取收益。无须许可的运营者。无效证明会被惩罚。一个为证明生成定价的诚实市场——前提是它不集中于少数集群拥有者。
A recursive proof that aggregates state transitions from Ethereum, Cosmos, Solana, Bitcoin SPV — and lets each chain trustlessly verify the others' history without a bridge committee.
一份递归证明,聚合来自以太坊、Cosmos、Solana、比特币 SPV 的状态转移——使每条链都可在无须桥委员会的情况下,无信任地验证彼此的历史。
Once aggregation is cheap, every meaningful global computation eventually folds into a single recursive π anchored on a public ledger. The boundary between "what the chain runs" and "what the world runs" begins to dissolve.
一旦聚合便宜,每一项有意义的全球计算最终折叠为锚于公链的单一递归 π。'链运行的'与'世界运行的'之间的界限开始消解。
If you understand these six objects, you understand every working ZK system. They are the alphabet from which all modern proofs are spelled.若你理解这六个对象,你便理解每个可运行的 ZK 系统。它们是现代证明拼写所依据的字母表。
When the cost of proving a computation drops below the cost of the computation itself, the social contract shifts. Every claim about a model, a transaction, an identity, a judgement begins to ship with a receipt.当证明一项计算的成本低于该计算本身,社会契约即发生迁移。关于模型、交易、身份、判断的每一项主张,都开始附带一张回执。
A toy model. Move the dials to assemble a coordination regime; the verdict at the bottom maps your configuration onto a known archetype: 1990s internet, 2010s platforms, 2020s ZK rollups, surveillance state, recursive-proof market, or a hypothetical 2040s mathematical civilization.一个玩具模型。移动旋钮以拼装一个协调体制;底部判决将您的配置映射到一个已知原型:1990 年代互联网、2010 年代平台、2020 年代 ZK 汇总、监视国家、递归证明市场,或2040 年代假设的数学文明。
A protocol is not a politics-free zone. The next chapter is written by whoever runs the prover farms, writes the circuits, and ships the foundation grants.协议不是政治真空。下一章由运营证明者农场、撰写电路、发放基金会拨款的人书写。
Religions schism, empires fall, banks fail, platforms close. A theorem, once proved, is proved forever. The bet behind zero-knowledge civilization is that moving as much of the trust stack as possible into the most permanent layer is the safest direction for a species that just spent fifty years discovering how easily its institutions can fail.宗教分裂、帝国崩溃、银行倒闭、平台关停。一个定理一旦被证明,就被永远证明。零知识文明的赌注是:将信任堆栈尽可能多地迁入最持久的那一层,对一个刚用五十年发现自己机构有多容易失败的物种而言,是最安全的方向。
— π · companion to psy.psyverse.fun & zk-civilization.psyverse.fun — π · 伴随 psy.psyverse.fun 与 zk-civilization.psyverse.fun