The backend choice determines which share representation, curve/field, preprocessing, and client I/O path Stoffel records in the bytecode manifest. Security and completion guarantees differ between preprocessing and online execution. See Security and fault model before treating the configured threshold as an end-to-end Byzantine-security guarantee.
mpc-protocols has received an external audit from Zellic. Audit scope matters: validate the specific protocol version, integration code, deployment configuration, and threat model you rely on. Other Stoffel components have also had AI-assisted security review, including tools such as veria.dev. Treat audit and review coverage as component-scoped when evaluating a deployment.Choose by workload shape
Start from the shape of the secret work, not the name of the application.Security and cost reference
Topology depends on the backend: HoneyBadgerMPC requiresn >= 4t+1, while AVSS requires n >= 3t+1. These constraints do not by themselves guarantee preprocessing availability, fairness, or output delivery under arbitrary delays. Use the backend-specific parameter table and security matrix, protocol costs, and paper map to evaluate your deployment.
Select AVSS with a specific curve:
backend = "avss" and set the curve separately:
bls12_381, bn254, curve25519, ed25519, secp256k1, and p-256.
Select a backend from the CLI
stoffel check, stoffel compile, stoffel build, stoffel run, and stoffel dev accept the same backend/field overrides when they compile source or project settings.
Select a backend from Rust
.backend(...) or .curve(...):
Topology constraints
With threshold one, this means five HoneyBadgerMPC parties or four AVSS parties. HoneyBadgerMPC needs the extra party because its preprocessing reconstructs degree-
2t values while correcting up to t errors. AVSS verifies degree-t shares against public commitments and uses 3t+1 Byzantine quorum intersection. Its lower party count comes with public commitments and group-operation costs; it is not a drop-in replacement for private application arithmetic.