CHIPs · CHIP-2025-05 · draft

Native Elliptic Curve Arithmetic Operations

Proposes OP_ECADD and OP_ECMUL for elliptic curve point addition and scalar multiplication in Script, aimed at zero-knowledge proofs and signature aggregation.

Verified

Summary

The proposal adds two opcodes, OP_ECADD (elliptic curve point addition) and OP_ECMUL (scalar multiplication), so contracts can do elliptic curve math directly.

Note: this CHIP shares the “CHIP-2025-05” date prefix with the unrelated Functions and Bitwise CHIPs.

Motivation

From the author: native EC operations would let BCH contracts “natively validate zero-knowledge proofs, enable signature aggregation, and lay the groundwork for scalable privacy and off-chain protocols like Bulletproofs – all without resorting to trusted setups or external proof systems.”

These operations can already be approximated with covenants and loops, but “at a massive cost in complexity, size, and execution cost.”

What it specifies

The initial draft specifies point addition and scalar multiplication. Later discussion noted that a 2027 activation would need a fully specified version published soon, possibly with more opcodes beyond these two.

Current status

Draft, first posted 23 May 2025. In the “2027 protocol upgrade ideas” thread (December 2025), kzKallisti listed it among notable CHIPs that were “incomplete and lacking consensus.” In August 2026 he said he “would consider endorsing a well-specced, benchmarked, and tested CHIP for 2027 lock-in.” It is not locked in, and no formal stakeholder statements were found. The BCH Podcast noted a sentiment page for it on consensus.cash.

Sources

  1. CHIP 2025-05 Native Elliptic Curve Arithmetic Operations (Bitcoin Cash Research)
  2. bch-ec-arithmetic repository
  3. 2027 protocol upgrade ideas (Bitcoin Cash Research)