Keyboard shortcuts

Press or to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Parameters and byte sizes

NameValueMeaning
HASH_BYTES32Hash output and WOTS security parameter n
WINTERNITZ_W16Number of positions in one chain
CHAIN_STEPS15Maximum transitions per chain
MESSAGE_DIGITS64Base-16 digits in a 256-bit message
CHECKSUM_DIGITS3Base-16 checksum digits
CHAIN_COUNT67Total signature chains
MASK_COUNT16Reachable upstream mask indices 0 through 15
SIGNATURE_BYTES2,14467 × 32-byte chain values
PUBLIC_KEY_BYTES64Public seed and endpoint hash
FUSED_OUTPUT_BYTES2,208Signature plus public key
Signer output beats35512-bit transfers, partial final keep
Verifier input bytes2,240Signature, public key, and message digest
Verifier input beats35512-bit transfers, all lanes valid
SHA signer blocks1,258Fixed fused private-seed work
Active clusters3Signer and verifier
Contexts per cluster4One lane shared locally
Active contexts12Three clusters × four contexts
SHA lane latency64 cyclesExact tag-preserving compression latency

These constants describe authored protocol and source geometry. LUTs, registers, DSPs, RAM, frequency, and physical latency come from higher evidence tiers.