Confium Threshold

Confium Threshold is the threshold-signing product: replace a single private key with T-of-N distributed shares. No single party can sign alone. Compromising any T-1 parties doesn’t compromise the key.

Algorithms

Algorithm Curve / Group Rounds Status
CMP20 P-256 3 Shipped
GG18 P-256 4 Shipped (legacy; prefer CMP20)
FROST P-256 2 Shipped
FROST Ed25519 2 Shipped
MuSig Schnorr 2 Skeleton
BLS BLS12-381 2 Skeleton
Threshold ElGamal P-256 N/A (encryption) Shipped

Crates

  • confium-tc-core — session primitives, share interface, registry
  • confium-tc-keys — key lifecycle, HSM/KMS, BIP-32
  • confium-coordinator — multi-round orchestration service
  • confium-tc-cmp20 — CMP20 threshold ECDSA
  • confium-tc-gg18 — GG18 threshold ECDSA
  • confium-tc-frost-p256 — FROST over P-256
  • confium-tc-frost-ed25519 — FROST over Ed25519
  • confium-tc-bls — Threshold BLS (skeleton)
  • confium-tc-elgamal-p256 — Threshold ElGamal encryption
  • confium-signerd — production signing daemon

Concepts

These topics are specified in the specs repo:

Multiplicative-to-Additive (MtA) via Paillier is described in the CMP20 spec and implemented in confium-crypto-vss::paillier.

How-to

Practical recipes live in the Cookbook:

Reference

In this section