04 — Trusted setup · Failure mode

Deployed parameters that do not match the ceremony output

The verifying key deployed on-chain or shipped to clients differs from the ceremony result because of a rebuild, a manual copy, or a toolchain version change — and nothing in the system detects it.

Mitigation

Pin the parameter hash in the verifier and in CI, and fail the build on mismatch. Include the check in the audit scope.

Cite this page
MarketComp (2026). Deployed parameters that do not match the ceremony output. The ZK Field Manual (Version 1.3). MarketComp. https://zkpick.com/ceremony/failure-modes/deployed-parameters-that-do-not-match-the-ceremony-output/
@misc{zkfieldmanual-deployed-parameters-that-do-not-match-th,
  title        = {Deployed parameters that do not match the ceremony output — The ZK Field Manual},
  author       = {MarketComp},
  year         = {2026},
  version      = {1.3},
  howpublished = {\url{https://zkpick.com/ceremony/failure-modes/deployed-parameters-that-do-not-match-the-ceremony-output/}},
  note         = {Accessed: YYYY-MM-DD}
}