Paper 2026/1371

The Small-Field Turn in Succinct Proofs: A Systematization of Finite-Field Choice in Modern SNARKs and STARKs

Christos Skatharoudis, University of the Aegean
Abstract

Over the past half-decade, transparent succinct arguments have migrated off the 256-bit scalar fields of pairing-friendly elliptic curves and onto small fields: the 64-bit Goldilocks prime, the 31-bit primes BabyBear and KoalaBear, the Mersenne prime 2³¹−1 reached through the circle construction, and binary tower fields down to F₂. We call this movement the "small-field turn" and systematize it with the finite field, rather than the proof system or the virtual machine, as the unit of analysis. We organize the fields in use by the structural properties that drive their selection: machine-word fit, two-adicity, reduction cost, and the S-box automorphism structure exploited by algebraic hashes; and we show how each is realized in a production prover (Plonky2, Plonky3, Stwo, Binius, and their descendants). We then assemble, across systems that state it only individually, the relationship between base-field width and the extension degree that Fiat–Shamir soundness requires, and we set that relationship against the measured gap between conjectured and provable soundness for non-interactive FRI. Finally, we separate the peer-reviewed results on embedding and arithmetization overhead from the vendor benchmarks that dominate the topic, and identify the controlled cross-field comparison whose absence is the area's sharpest empirical gap. No prior work takes field choice as its organizing object across this design space; the nearest systematization treats it as one dimension among many within a zero-knowledge virtual machine taxonomy. We frame the turn as the exploration of a single trade, cheaper arithmetic against repurchased soundness and simulated non-native operations, and argue from the provenance of the fields where the frontier is likely to move next.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Preprint.
Keywords
zero-knowledge proofsSNARKsSTARKsfinite fieldsFRIpolynomial commitment schemesarithmetization
Contact author(s)
chris skatharoudis @ gmail com
History
2026-07-06: approved
2026-07-03: received
See all versions
Short URL
https://ia.cr/2026/1371
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/1371,
      author = {Christos Skatharoudis},
      title = {The Small-Field Turn in Succinct Proofs: A Systematization of Finite-Field Choice in Modern {SNARKs} and {STARKs}},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/1371},
      year = {2026},
      url = {https://eprint.iacr.org/2026/1371}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.