As the Zcash ecosystem Security Lead, Zcash Community Grants (ZCG) requested that we perform a security audit of the FROST server and client components. The frost-crate is an implementation for a threshold Schnorr signatures scheme called FROST (RFC 9591, [KG20]). The frost-demo allows a user to locally mimic a key generation setup via a trusted dealer or a distributed key generation protocol (DKG) as well as the FROST signing protocol.
Our final audit report was completed on April 29, 2025.
To read the full report, including our findings, click here: