Paper 2026/1773

Enforcing Winner-Only Disclosure: Verifiable Tally Hiding for Weighted DAO Governance

Jiayu Li, Henan Normal University
Gongli Li, Henan Normal University
Abstract

Token-weighted governance can fingerprint individual voters: when weights are unequal and externally known, the exact weighted tally may reveal who voted which way. Publishing only the winning outcome hides the tally from the public, but a system that reconstructs the tally in order to decide still hands it to whoever runs the computation. Publishing only the winner is not the same as computing only the winner. We present a verifiable protocol for weighted DAO votes in which no protocol role ever receives the weighted tally in plaintext. Each ballot proves in zero knowledge that its encrypted contribution is exactly zero or the voter’s registered weight. Trustees add accepted contributions and compare the sum with a threshold entirely under encryption using the Cortier–Gaudry–Yang (CGY) conditional-gate toolbox, and decrypt only the final decision. A public verifier checks that the computation consumed exactly the ciphertexts accepted by the governance contract. We prove accepted-result correctness even when all trustees are malicious; restricted-I/O SUC security of the tally against static active corruption of any sub-threshold trustee coalition, which is any four of five in our reference instance; and winner-only disclosure relative to the real sealed board. With 1,024 voters, the encrypted tally takes 157 s and independent replay 115 s, while ballot proving dominates the 28.5-minute end-to-end pipeline. A fresh Arbitrum Sepolia execution exercises the complete public-chain path

Note: V4 substantially strengthens the security model and proof architecture: the reference threshold is upgraded from 3-of-5 to 5-of-5, giving tally security against up to four statically active trustees; the proof now inherits the applicable CGY restricted-I/O SUC composition result; and the previous Honest-Cast restriction is replaced by a real-admission/sealed-board disclosure formulation allowing malicious voters during board formation. The implementation is updated with a native Rust tally/replay backend and a fresh 5-of-5 Arbitrum Sepolia execution.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Preprint.
Keywords
Weighted votingTally hidingDAO governanceThreshold cryptographySecure computationPublic verifiability
Contact author(s)
2408324056 @ stu htu edu cn
ligl522 @ 163 com
History
2026-09-23: last of 4 revisions
2026-08-22: received
See all versions
Short URL
https://ia.cr/2026/1773
License
Creative Commons Attribution-NonCommercial-NoDerivs
CC BY-NC-ND

BibTeX

@misc{cryptoeprint:2026/1773,
      author = {Jiayu Li and Gongli Li},
      title = {Enforcing Winner-Only Disclosure: Verifiable Tally Hiding for Weighted {DAO} Governance},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/1773},
      year = {2026},
      url = {https://eprint.iacr.org/2026/1773}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.