PQC output type discussion

Posted by sipa

Aug 24, 2026/17:56 UTC

The debate concerning the adoption of post-quantum cryptography (PQC) in blockchain technology, particularly Bitcoin, reveals a complex landscape of technological challenges and community responses. The introduction of Taproot aimed to facilitate cheaper transaction types with PQC support; however, after five years, widespread adoption remains limited. This outcome appears linked more to the preferences of systems built around newer technologies and less about economic incentives, as illustrated by the preference for P2MR despite its higher costs compared to P2TR.

A significant portion of the discussion revolves around the potential implementation of an extension block to address scalability and integration concerns. An extension block would create a separate area for transactions, which could operate independently yet concurrently with the main blockchain, maintaining a unique UTXO set and allowing for bidirectional coin movement. Despite its potential to be implemented as a soft-fork, this approach is highly invasive and largely incompatible with existing wallet designs. Alternatively, a less disruptive proposal suggests introducing a new witness in transaction serialization similar to Segwit, which could incorporate post-quantum witness data without requiring extensive changes such as new wtxids or peer-to-peer network modifications.

Technological enhancements are also being considered to improve blockchain efficiency, specifically through optimizing block propagation speed. Techniques like compact blocks and FIBRE aim to minimize delays in transaction and block relay across the network, critical for maintaining rapid validation and subsequent mining on top of new blocks. Additionally, there's ongoing exploration into cryptographic methods such as SNARK aggregation or witness extensions, which could potentially reduce computational costs per byte while adapting the signature verification standards close to those established by BIP-340.

Amid these technical discussions, there's also a recognition of the varied interests within the Bitcoin community, particularly concerning privacy-focused transaction methods like Payjoin and Coinjoin. These groups are likely early adopters of any new PQC output type, driven by their prioritization of enhanced security measures. However, broader community consensus and corporate adoption may lag due to perceived complexities and the need for substantial educational efforts.

In conclusion, while there is enthusiasm for advancing Bitcoin’s cryptographic resilience against quantum threats, the path forward involves balancing technical feasibility with community readiness and acceptance. The future will likely see a phased approach where initial solutions may not be universally optimal but serve as stepping stones towards more comprehensive adaptations.

Link to Raw Post
Bitcoin Logo

TLDR

Join Our Newsletter

We’ll email you summaries of the latest discussions from high signal bitcoin sources, like bitcoin-dev, lightning-dev, and Delving Bitcoin.

Explore all Products

ChatBTC imageBitcoin searchBitcoin TranscriptsSaving SatoshiDecoding BitcoinWarnet
Built with 🧡 by the Bitcoin Dev Project
View our public visitor count

We'd love to hear your feedback on this project.

Give Feedback