Skip to content
Basis Desk
Altcoins · 2 min read

Dogecoin Developers Propose OP_CHECKZKP to Enable Zero-Knowledge Verification

A draft Dogecoin Improvement Proposal outlines an opcode upgrade to support Groth16 and PLONK proofs as a soft fork.

Editorial oversight: Julian Mercer, Chief Editor
Neutral

Key points

  • A draft DIP proposes OP_CHECKZKP to enable native on-chain verification of zero-knowledge proofs on Dogecoin.
  • The proposal repurposes opcode 185 (OP_NOP10) to deploy the verification functionality as a backward-compatible soft fork.
  • The opcode introduces Mode 0 for Groth16 on BLS12-381 and Mode 1 for PLONK with Halo2/KZG on the BN256 curve.

Dogecoin developers introduced a draft Dogecoin Improvement Proposal (DIP) on GitHub proposing OP_CHECKZKP, a new opcode aimed at bringing native on-chain verification of zero-knowledge proofs to the Dogecoin network 1. The upgrade seeks to enable trustless Layer-2 scaling frameworks, such as zk-rollups, without requiring changes to the network's base consensus model or introducing a general Turing-complete virtual machine 1. At the time of writing, $DOGE traded at $0.0958, gaining 2.6% over the preceding 24 hours.

The proposed implementation repurposes the unused opcode 185 (0xB9), historically known as OP_NOP10 1. By redefining an existing no-operation code, the proposal functions as a backward-compatible soft fork: legacy nodes evaluate the byte as a standard OP_NOP, while updated nodes will invalidate any script where the zero-knowledge proof fails verification 1. Under successful verification, the opcode leaves input data on the stack, ensuring that execution continues without altering legacy stack expectations 1.

Multi-Mode Proof Support

According to the draft specification, OP_CHECKZKP relies on an extensible mode selector to support multiple cryptographic proof mechanisms 1. Mode 0 specifies verification of Groth16 proofs on the BLS12-381 curve with two public inputs, utilizing verification logic developed from previous community research by QED 1. Mode 1 provides support for PLONK proofs generated via Halo2 using the KZG commitment scheme on the BN256 curve, integrating protocol parameters from OpenVM 1. Under Mode 1, inputs are bounded by strict limits, including a maximum proof length of 4,096 bytes, a verifying key size cap of 8,192 bytes, and a maximum of 64 public inputs 1.

The initiative addresses performance bottlenecks in Dogecoin's native scripting language, which lacks the capability to verify off-chain compute operations efficiently 1. By delegating complex application computations to off-chain provers and verifying succinct proofs on-chain, proponents argue Dogecoin can accommodate decentralized finance and gaming activity without inflating node requirements or block verification times 1. This development follows community-led efforts to expand utility, such as when DogeOS launched an EVM-compatible public testnet for Dogecoin to facilitate smart contracts 1.

Questions this story raises

Does OP_CHECKZKP introduce a full virtual machine to Dogecoin?
No. The proposal explicitly avoids adding a general virtual machine or Turing-complete script, maintaining consensus simplicity by only handling on-chain proof verification while computation is done off-chain.
Will existing Dogecoin nodes need to upgrade immediately?
Because the proposal reuses the unused OP_NOP10 opcode, older nodes will interpret it as an unassigned no-op, allowing the change to function as a backward-compatible soft fork.

Sources

  1. [1] Draft Proposal: OP_CHECKZKP Zero-Knowledge Upgrade · dogecoin dogecoin · Discussion #3869 — github.com, October 1, 2026

Written by Basis Desk's newsroom system from the primary sources above and machine-verified against them before publication. Market figures marked "at the time of writing" come from live exchange data. Report an error: corrections@basisdesk.news · corrections policy.

Community read
How do you read this story for the assets involved? One vote a day, anonymous.
Be the first to vote

Not financial advice. Basis Desk publishes information, not recommendations. Crypto assets are volatile and you can lose what you invest.