Paper 2026/1371
The Small-Field Turn in Succinct Proofs: A Systematization of Finite-Field Choice in Modern SNARKs and STARKs
Abstract
Over the past half-decade, transparent succinct arguments have migrated off the 256-bit scalar fields of pairing-friendly elliptic curves and onto small fields: the 64-bit Goldilocks prime, the 31-bit primes BabyBear and KoalaBear, the Mersenne prime 2³¹−1 reached through the circle construction, and binary tower fields down to F₂. We call this movement the "small-field turn" and systematize it with the finite field, rather than the proof system or the virtual machine, as the unit of analysis. We organize the fields in use by the structural properties that drive their selection: machine-word fit, two-adicity, reduction cost, and the S-box automorphism structure exploited by algebraic hashes; and we show how each is realized in a production prover (Plonky2, Plonky3, Stwo, Binius, and their descendants). We then assemble, across systems that state it only individually, the relationship between base-field width and the extension degree that Fiat–Shamir soundness requires, and we set that relationship against the measured gap between conjectured and provable soundness for non-interactive FRI. Finally, we separate the peer-reviewed results on embedding and arithmetization overhead from the vendor benchmarks that dominate the topic, and identify the controlled cross-field comparison whose absence is the area's sharpest empirical gap. No prior work takes field choice as its organizing object across this design space; the nearest systematization treats it as one dimension among many within a zero-knowledge virtual machine taxonomy. We frame the turn as the exploration of a single trade, cheaper arithmetic against repurchased soundness and simulated non-native operations, and argue from the provenance of the fields where the frontier is likely to move next.
Metadata
- Available format(s)
-
PDF
- Category
- Cryptographic protocols
- Publication info
- Preprint.
- Keywords
- zero-knowledge proofsSNARKsSTARKsfinite fieldsFRIpolynomial commitment schemesarithmetization
- Contact author(s)
- chris skatharoudis @ gmail com
- History
- 2026-07-06: approved
- 2026-07-03: received
- See all versions
- Short URL
- https://ia.cr/2026/1371
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2026/1371,
author = {Christos Skatharoudis},
title = {The Small-Field Turn in Succinct Proofs: A Systematization of Finite-Field Choice in Modern {SNARKs} and {STARKs}},
howpublished = {Cryptology {ePrint} Archive, Paper 2026/1371},
year = {2026},
url = {https://eprint.iacr.org/2026/1371}
}