From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Fri, 28 Aug 2026 02:56:52 -0700 Received: from mail-oa1-f57.google.com ([209.85.160.57]) by mail.fairlystable.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (Exim 4.94.2) (envelope-from ) id 1wztKN-00042p-FX for bitcoindev@gnusha.org; Fri, 28 Aug 2026 02:56:52 -0700 Received: by mail-oa1-f57.google.com with SMTP id 586e51a60fabf-448bb8bcf38sf2362980fac.1 for ; Fri, 28 Aug 2026 02:56:51 -0700 (PDT) ARC-Seal: i=3; a=rsa-sha256; t=1787911005; cv=pass; d=google.com; s=arc-20260327; b=gdqZRX88nVY0WibobjEED12YASoVgFeaCj59CWzSkvmjHsHLW9NQSZKHLW3cTa/Y/r AeeMix1SDESsrKHva8HgngLnHQB7HgzgM5C0F4ozeqp4/aSswV2A2jHzrpFzHfz7NhSo C20wZM67pQCQxIbEZsFjPpwCm0hhiYweMZIb/4eEcI1nOwkpwG9Ss5mATpp7gC4zb/vH ubvgJODGSdcogFQO5GRquUcg7VasIMP8a0zLEHRFwg+7tAwgy5LEXz++HikRG1vZ8kHJ y5g/CEUjKxSJ6tcPTr2nIUgZ1H3cNaAqyuczl6/cIfNTja/ZrQ/jlcQo059J75EmFudW SghQ== ARC-Message-Signature: i=3; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20260327; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:sender:dkim-signature :dkim-signature; bh=gUyEynNwoOic6Ecylaqm5ZobetYNnPUULIUQKOP6fjQ=; fh=TBBGP27Y84O5e5PlQlIZiMfsAdhvkxO2fmKXD45wEUI=; b=PY5RTW6d3EkpvLLtIUuTCuOt+Ta11DrnlLY+xa/GAHaNDgqBA8B+Sjle2TL0Dsww9Y l4bCQ0frxRoj6/rT2/i7JN7W8hHlts2MxLnIMkeQSNnpFNnIXwB5nkhKWGEXFvo8vlnQ YOfbCuADEuYnDHM/EiSkLa422Z044UpThUji4ioPlm31A9ENDuRa0B+QbUoE49TarDH9 5I5rApN2xxAxjW1seBhyYVlNtpOUkX2mUkF7wmF5+1UWqHu/Kpt1nHVT+aOoNjMf+qsn edv1yu85hhgs3CUjWVbcxgdjePiPICxDzVK7E2VTfD9DHwpBq+L1iBLry3931rNgpcs4 x4Zg==; darn=gnusha.org ARC-Authentication-Results: i=3; gmr-mx.google.com; dkim=pass header.i=@gmail.com header.s=20251104 header.b=F1HsZy2S; arc=pass (i=1); spf=pass (google.com: domain of saintwenhao@gmail.com designates 2a00:1450:4864:20::131 as permitted sender) smtp.mailfrom=saintwenhao@gmail.com; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com; dara=pass header.i=@googlegroups.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20251104; t=1787911005; x=1788515805; darn=gnusha.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:content-type:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:sender:from:to:cc:subject:date :message-id:reply-to:content-type; bh=gUyEynNwoOic6Ecylaqm5ZobetYNnPUULIUQKOP6fjQ=; b=SbHtHOI9qCU5E1BcYa6mQtNF7VEvA1KgBk3FTJsTJBTUgiQH1S8rch6q/nyUPxlVZV cd2trS1TUCs1/+i9dCVSj77vXGkeiIYSSvIuLvw/Bh0NCp9G/FEvxAlMJF+EfLHAdnaa M4ijliqSaHMvEI5+1/9yMwjJfwfuT4aufvtqqaXUuHNflvWVuo8xcDcVgSYjH6BYpFyz HMYsOyi1E2A5MHWeuK/5E2b8WkGb2C0oIA05GE2+BwwPr72WNgIkY000r2UpD2QA3cM8 aKfkYnbZEk4eV5WnW0rbFFe+woRRNfNxbf+TwGoEF3onWcmoNAvra6OWRXS4lV/QV76X GijA== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1787911005; x=1788515805; darn=gnusha.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:content-type:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:from:to:cc:subject:date :message-id:reply-to:content-type; bh=gUyEynNwoOic6Ecylaqm5ZobetYNnPUULIUQKOP6fjQ=; b=DGBC+gUQz69buZebjl5vAejI7ZTzkHqasjyvb17APoYq/woFF7UtpmmXPyPH3dpR7w pboj60Fw7Qw27nLCN5dXOG2IRTtWGWVKm5oQT6EB27IHOsrbbXmgS+sF2GibtqvRyo/n XHFGO1/JrOhGdJarxgejSc3HhJVd3WBTJQMnMNdyqCXIw57hgJov7uhsK3A+4oPE21I2 Kg/BQgiSM2VyBudKkDP5I8T/f50fZZvAlIsRGmqS1taWipTHB3/rgl2fuIHhT9CIkfbV RUXCjN2LiHPuvQkde236etEBPNXGbRQ7zHpWM12YmgfOe6Mec24Qfkx7tpr98eyK7b+v ta/g== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1787911005; x=1788515805; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:content-type:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:x-gm-gg:x-beenthere :x-gm-message-state:sender:from:to:cc:subject:date:message-id :reply-to:content-type; bh=gUyEynNwoOic6Ecylaqm5ZobetYNnPUULIUQKOP6fjQ=; b=EAv3bR5VKaW2gri9fdnoTrh1h8ahlm8lC4K5JFzWaWuMgnzzZMfzTlSBW2QR3eCGH5 o2gT3WOLegq76sITCsuVSpuMVDeUxwiMI2pB8eF+PrMQ3liOYoRBvHyIbmIKhgDF7NTp P0oLVFjnvCnx9mH4BFu8Vq+EPz09DvCVksMPw2aIGIjiNyLAoTMoSsd1WkM3ij12hyH2 gndu7tadoSV2aXsYNfUHIP93Mr2mMZYnO4qURY734/MUeBGyGbQIpvvsm2aX728+Agvk Zt0zNagNocd7fCfblN9WTBPBZS7CgTHC/XP43af+gzt4ywIJVTczE1gTnKp6ZC1M8GF/ 0Z6Q== Sender: bitcoindev@googlegroups.com X-Forwarded-Encrypted: i=3; AHgh+Rpz2Nti7kR6eh3O5isHGr7eG9spYo0iIHfUJiqhe8f3I4sdL0ZHGDElknpkQYr0BdRVdf5CpIj7k+L5@gnusha.org X-Gm-Message-State: AFuF++nixZzHI6uxQSjPtwjuqPqtvha2B/XazGVBN+xzYHuzkPSvSMlV ADC6lxVmCG7mJrOle0gFRTYMLkaqTKeB2OBgj0KQwJz7K3UmOLgDQc2b X-Received: by 2002:a05:6820:5712:20b0:6b1:bbc0:b6a2 with SMTP id 006d021491bc7-6b1c6430388mr3864957eaf.8.1787911005050; Fri, 28 Aug 2026 02:56:45 -0700 (PDT) X-BeenThere: bitcoindev@googlegroups.com; h="ATskLdd270w9+PeCnEtWoXeWnUgrI5HgUtoo2Vvf0t+Hq2J/uA==" Received: by 2002:a4a:e9e4:0:b0:6aa:c7c9:b91e with SMTP id 006d021491bc7-6b1b27b230fls1811766eaf.2.-pod-prod-02-us; Fri, 28 Aug 2026 02:56:40 -0700 (PDT) X-Received: by 2002:a05:6808:144f:b0:4b3:94b0:1ad0 with SMTP id 5614622812f47-4b397fa3580mr6151435b6e.5.1787910999883; Fri, 28 Aug 2026 02:56:39 -0700 (PDT) Received: by 2002:ab3:6158:0:b0:308:ee47:a2d9 with SMTP id a1c4a302cd1d6-3119b8bf523msc7a; Fri, 28 Aug 2026 02:51:19 -0700 (PDT) X-Received: by 2002:a05:6512:15a3:b0:5b4:a388:63a with SMTP id 2adb3069b0e04-5b5e68a73f1mr1518186e87.4.1787910677346; Fri, 28 Aug 2026 02:51:17 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1787910677; cv=pass; d=google.com; s=arc-20260327; b=Dnu9ecKmfIZzofNoJESRhUS0XwoxOUjU/YjtKKNLEMkfseEMVam7ii7oSJ6sx6MsqY mV4XYrWm5tT4fmtdOnKYAIgobV/ecwXwTgfcrW9GJjWao8m/dofkJRzE/qHSNDistAFu KISNRQDvCqkoej2e/yuOraj5MukAiRT1JaBRom/mLLgiPhYOhxZoVwH3ZaR4fi8sXLtA yuUwHzI+dRrO8Xa8xZr0eL5b2jz1vg9sRn07uqFXh9nLv8IRuy3afRGf+NhNlULynQrg 7+7D6BiUPc/w/Rm3CFZL4Q3X7/AucVYszrFPmVV2HMq/veoBn/yKI5jhXEfR6g2RL8y4 Seaw== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20260327; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=DRj9N0LpFbVtOwxf9MnDcc3pTul0vmF5MrTyScag4/A=; fh=9XveHCw5je8dsoMMosYM2J5FWrXlnE+8pds0Dc4dso4=; b=kyOm4aGnfm9EW6E2SGe4N/tFeWIYBvdi4XuXaGNRtDgNKnjaCEbY+zLiJhDwe4fY4O NCPhwbnALfJcTEe7cQ+YTCff/L1d4tHCCen0BSaICrGiEPDWfqFQ1MvZ16wLgh2MV70q gw6mxRksV5mf2hZfmzxx/htqdf9BZ+/aLJvUtkpb6XHar5FL3THGaY9nm/crM+PyL17a P/1hBmT+DLf5Y0kqMkgcGPxUhpT9oTAsb/nypzYTjI3fVT7C3mPexR2JqR2MFLTKCxgn ovRWKsoqcJA5Yk8i9dxnXhFzwv24d7dJW5xiIkNToS0pzF6QhtghBu2C1SD9dw6aVn6Q n6gg==; dara=google.com ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@gmail.com header.s=20251104 header.b=F1HsZy2S; arc=pass (i=1); spf=pass (google.com: domain of saintwenhao@gmail.com designates 2a00:1450:4864:20::131 as permitted sender) smtp.mailfrom=saintwenhao@gmail.com; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com; dara=pass header.i=@googlegroups.com Received: from mail-lf1-x131.google.com (mail-lf1-x131.google.com. [2a00:1450:4864:20::131]) by gmr-mx.google.com with ESMTPS id 2adb3069b0e04-5b5e8a09297si27419e87.4.2026.08.28.02.51.17 for (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Fri, 28 Aug 2026 02:51:17 -0700 (PDT) Received-SPF: pass (google.com: domain of saintwenhao@gmail.com designates 2a00:1450:4864:20::131 as permitted sender) client-ip=2a00:1450:4864:20::131; Received: by mail-lf1-x131.google.com with SMTP id 2adb3069b0e04-5b4a9994c20so738890e87.0 for ; Fri, 28 Aug 2026 02:51:17 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1787910677; cv=none; d=google.com; s=arc-20260327; b=AXn3O7PlL8eI6IaPNLPq3hs4mb4lHv2meYrWmm3K4F5VchZiekV6jByiMGqwFYwYAa wF6p6Cdqlx5pTLgMl0pM+l9Ndo+QJUJ3r6nB/OfQCxCc5tGDasWbbOeSvefDOd6AioMn XnlNBNq49eSu1cZPm5YRtqvPK4sC8nVxCocYT/26Sco7jix+0UYCMrnlBkh8eF6t+376 B1y9VvB4Hg1W94qqVIl+NBNzpsn9Np1VxX4SGpAhMKqYFpBOSZ7N2OU7lNmwzQY1iEni NM3eXEHrH2HGC2X2wdoR8SYtzZfYkQvAUuhaayVJqaLWFL+AQxSxT7s/dU6LNEY2VthZ PrQw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20260327; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=DRj9N0LpFbVtOwxf9MnDcc3pTul0vmF5MrTyScag4/A=; fh=9XveHCw5je8dsoMMosYM2J5FWrXlnE+8pds0Dc4dso4=; b=OmDAeiFYKwva3GdCdf7EhPsEv+jw/nzzs0axifExvfCJNLvDh2VFA0JUF5ar+5PRUG hmy2Qq/JR83KfHE2EHsUFtyvPgg/l9odngaXi+qQLWaIbcUBx4oENWPfRmo+/0H6VOLL W/5JsvxzAiwTxC3K30Gr2r+XzXOIpYgjp2wWXUVcCEDzaXZtZIMETJ0sCHfrMUkYSvDt dLgvKXVXd5aVz/HCRsbKNONMB7fe98WTS1Ebd4xA3Yiy/nDHvycCFqQ5YrTajz/QA2jZ DbR856jOkMH9My5+L+zZyyWT+xpuHDfYZUsI2zBKxVDJ+rzeXpYxUfqM4H6jupbR+0OL hiMw==; dara=google.com ARC-Authentication-Results: i=1; mx.google.com; arc=none X-Gm-Gg: AR+sD11y3tLeuDfDEgbclE7COz7TIt0qIAaM1e+RrXsoqO26q3KIgSqSj9vZsDYZHg0 tZoC5XmP6cS+kyr+XpKtzaXfwUDPserykPkD7nFqB5AiHJugL57OsA2fVwEOqDHGMnlbcF7Vhhz ggx/URfRWF+ASmRpm8MSLPnmCgP35lO6HQmBQV74nGzbRPhx6UjlVG0QCAIjVg3pgvM5DwIqdf+ C/CEQXdJI5YTy0XdoCY34OnGYksW9EmfNJQm3sBrRM7mwNVY1W+fhNgfZJqOAv2uHEyEb8HnnoO qA+n0In/QIl+ur/O0yeLaYdtHBZ5b4W1Pq7jRe8NxpZJWYLTohRdyb2VZHo76Ek1SKh70G8ZiWQ = X-Received: by 2002:a05:6512:ac7:b0:5ae:b998:9134 with SMTP id 2adb3069b0e04-5b5e68a7adfmr1597245e87.1.1787910676515; Fri, 28 Aug 2026 02:51:16 -0700 (PDT) MIME-Version: 1.0 References: <4bbb1017-8080-4916-8f85-082d2ebf5eacn@googlegroups.com> In-Reply-To: <4bbb1017-8080-4916-8f85-082d2ebf5eacn@googlegroups.com> From: Saint Wenhao Date: Fri, 28 Aug 2026 11:51:04 +0200 X-Gm-Features: AcwNN1U3izVvSVVTtrOgFBY1L_NV97C8wq4Q1I_A4-7pceBYFQnpGYc1ue9OpNQ Message-ID: Subject: =?UTF-8?Q?Re=3A_=5Bbitcoindev=5D_=5Bbitcoin=2Ddev=5D_Draft_BIP_for_discuss?= =?UTF-8?Q?ion=3A_Time=2DShifted_Proof_of_Work_=28TSPOW=29_=E2=80=94_an_informational?= =?UTF-8?Q?_consensus=2Ddesign_proposal?= To: Jack Liao Cc: Bitcoin Development Mailing List Content-Type: multipart/alternative; boundary="000000000000c39227065a18643e" X-Original-Sender: saintwenhao@gmail.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@gmail.com header.s=20251104 header.b=F1HsZy2S; arc=pass (i=1); spf=pass (google.com: domain of saintwenhao@gmail.com designates 2a00:1450:4864:20::131 as permitted sender) smtp.mailfrom=saintwenhao@gmail.com; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com; dara=pass header.i=@googlegroups.com Precedence: list Mailing-list: list bitcoindev@googlegroups.com; contact bitcoindev+owners@googlegroups.com List-ID: X-Google-Group-Id: 786775582512 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Score: -0.5 (/) --000000000000c39227065a18643e Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable > Hard fork. I guess it could be turned into a no-fork, if you would just create a mining pool, working with your rules. > changes the block header If it is compatible, then it doesn't matter. For example: locally, each node could extract the difficulty out of the block header, and have a chain of difficulty periods, stored separately, and copy-pasted into the actual header, when needed. Then, every two weeks, instead of having "80 * 2016 bytes", it could be "4 + (76 * 2016) bytes", when it comes to the way it is stored locally. Will it change the header? Sure. Will it be backward-compatible? Of course. > replaces direct block authorship with pool-based selection Existing mining pools already did de-facto that. Miners are paid per shares, there are not that many solo miners anymore. > and reallocates rewards Again, in practice, miners create blocks, sending coins to the pool operator, and later, they are splitted, based on sent shares. czw., 27 sie 2026 o 17:37 Jack Liao napisa=C5=82(a): > Hi all, > > I am sharing a draft BIP for feedback before submitting it to the bips > repository. It is classified as Informational: it documents a > consensus-design > pattern and its security analysis. It does NOT recommend activating a har= d > fork > on the Bitcoin main chain. > > WHAT THE PROPOSAL IS > > Time-Shifted Proof of Work (TSPOW) separates the three roles Bitcoin bind= s > into > a single event =E2=80=94 finding a hash below target, earning the block r= eward, and > authoring the block =E2=80=94 into two stages: > > 1) Stage 1 (warrant issuance): miners produce a valid initial-hash warran= t > H_n > (H(header, nonce) < D1), which carries the right to the new-coin rewar= d. > Rewards are deferred and warrants expire. > > 2) Stage 2 (selection): once k warrants accumulate (an adaptive Gamma > batch), > the protocol elects a block producer from the candidate pool via > argmin H(h, R, PrevBlockHash), where R is an external-beacon output > (with the > previous block hash as the chain-derived fallback seed). > > Two claimed properties, both backed by the whitepaper and by cross-checke= d > simulation (Rust / C++ / Python; see the repository): > > - Block-time stability: the block interval becomes a Gamma(k, lambda) sum > instead of a single exponential arrival, dividing block-time variance b= y > 1/k. > - Withholding economics: warrant expiry plus deferred reward make private= ly > mining / withholding a warrant strictly suboptimal (expected payoff > strictly > decreasing in delay). > > WHAT THE PROPOSAL HONESTLY DOES NOT CHANGE > > - A >50% adversary still dominates warrant generation and thus pool > composition; 51%-attack security is unchanged natively. > - Without the external beacon, the long-run double-spend probability > remains > (q/p)^z, identical to traditional PoW. > > KNOWN COSTS / RISKS (TO BE TRANSPARENT) > > - External beacon =3D a new trust assumption. The election only fully > eliminates > private mining when an honest beacon is present; a compromised or > censored > beacon degenerates to the weaker chain-derived seed. > - Hard fork. Adopting TSPOW changes the block header, replaces direct blo= ck > authorship with pool-based selection, and reallocates rewards. This is = by > construction a severe backward-incompatible change =E2=80=94 another re= ason this > is an > informational document, not an activation proposal. > - Pool-flooding within a window is mitigated (chained FIFO, per-owner > caps) but > not eliminated; residual risk should be stress-tested. > > MATERIALS > > - BIP draft: bip-corepool-timeshiftpow (source in the repository below) > - Reference implementations, verification scripts, and numerical checks: > https://github.com/corepool/timeshiftpow > - Whitepapers (CN + EN) and formal security analysis in the same > repository. > > I would welcome scrutiny of the Gamma block-time argument, the > withholding-economics model, and the beacon trust model in particular, > both on > this list and in the BIP's security-considerations section. > > Comments-Summary: No comments yet. > > Thanks, > corepool > > -- > You received this message because you are subscribed to the Google Groups > "Bitcoin Development Mailing List" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to bitcoindev+unsubscribe@googlegroups.com. > To view this discussion visit > https://groups.google.com/d/msgid/bitcoindev/4bbb1017-8080-4916-8f85-082d= 2ebf5eacn%40googlegroups.com > > . > --=20 You received this message because you are subscribed to the Google Groups "= Bitcoin Development Mailing List" group. To unsubscribe from this group and stop receiving emails from it, send an e= mail to bitcoindev+unsubscribe@googlegroups.com. To view this discussion visit https://groups.google.com/d/msgid/bitcoindev/= CACgYNOKLNCP4_CkWUU5H0cDCcwqbKY%2B%2BKxP33gjKJKOd861BFQ%40mail.gmail.com. --000000000000c39227065a18643e Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable
> Hard fork.

I guess it could be turned into a n= o-fork, if you would just create a mining pool, working with your rules.
> changes the block header

If it is compatible, then it does= n't matter. For example: locally, each node could extract the difficult= y out of the block header, and have a chain of difficulty periods, stored s= eparately, and copy-pasted into the actual header, when needed. Then, every= two weeks, instead of having "80 * 2016 bytes", it could be &quo= t;4 + (76 * 2016) bytes", when it comes to the way it is stored locall= y. Will it change the header? Sure. Will it be backward-compatible? Of cour= se.

> replaces direct block authorship with pool-based selection<= br>
Existing mining pools already did de-facto that. Miners are paid per= shares, there are not that many solo miners anymore.

> and reall= ocates rewards

Again, in practice, miners create blocks, sending coi= ns to the pool operator, and later, they are splitted, based on sent shares= .

czw., 27 sie 2026 o 17:37=C2=A0Jack Liao <xiangliao@gmail.com> napisa=C5=82(a)= :
Hi all,
I am sharing a draft BIP for feedback before submitting it to the bips
= repository. It is classified as Informational: it documents a consensus-des= ign
pattern and its security analysis. It does NOT recommend activating = a hard fork
on the Bitcoin main chain.

WHAT THE PROPOSAL IS
Time-Shifted Proof of Work (TSPOW) separates the three roles Bitcoin bind= s into
a single event =E2=80=94 finding a hash below target, earning the= block reward, and
authoring the block =E2=80=94 into two stages:
1) Stage 1 (warrant issuance): miners produce a valid initial-hash warrant= H_n
=C2=A0 =C2=A0(H(header, nonce) < D1), which carries the right to= the new-coin reward.
=C2=A0 =C2=A0Rewards are deferred and warrants exp= ire.

2) Stage 2 (selection): once k warrants accumulate (an adaptive= Gamma batch),
=C2=A0 =C2=A0the protocol elects a block producer from th= e candidate pool via
=C2=A0 =C2=A0argmin H(h, R, PrevBlockHash), where R= is an external-beacon output (with the
=C2=A0 =C2=A0previous block hash= as the chain-derived fallback seed).

Two claimed properties, both b= acked by the whitepaper and by cross-checked
simulation (Rust / C++ / Py= thon; see the repository):

- Block-time stability: the block interva= l becomes a Gamma(k, lambda) sum
=C2=A0 instead of a single exponential = arrival, dividing block-time variance by 1/k.
- Withholding economics: w= arrant expiry plus deferred reward make privately
=C2=A0 mining / withho= lding a warrant strictly suboptimal (expected payoff strictly
=C2=A0 dec= reasing in delay).

WHAT THE PROPOSAL HONESTLY DOES NOT CHANGE
- A >50% adversary still dominates warrant generation and thus pool
= =C2=A0 composition; 51%-attack security is unchanged natively.
- Without= the external beacon, the long-run double-spend probability remains
=C2= =A0 (q/p)^z, identical to traditional PoW.

KNOWN COSTS / RISKS (TO B= E TRANSPARENT)

- External beacon =3D a new trust assumption. The ele= ction only fully eliminates
=C2=A0 private mining when an honest beacon = is present; a compromised or censored
=C2=A0 beacon degenerates to the w= eaker chain-derived seed.
- Hard fork. Adopting TSPOW changes the block = header, replaces direct block
=C2=A0 authorship with pool-based selectio= n, and reallocates rewards. This is by
=C2=A0 construction a severe back= ward-incompatible change =E2=80=94 another reason this is an
=C2=A0 info= rmational document, not an activation proposal.
- Pool-flooding within a= window is mitigated (chained FIFO, per-owner caps) but
=C2=A0 not elimi= nated; residual risk should be stress-tested.

MATERIALS

- BIP= draft: bip-corepool-timeshiftpow (source in the repository below)
- Ref= erence implementations, verification scripts, and numerical checks:
=C2= =A0 = https://github.com/corepool/timeshiftpow
- Whitepapers (CN + EN) and= formal security analysis in the same repository.

I would welcome sc= rutiny of the Gamma block-time argument, the
withholding-economics model= , and the beacon trust model in particular, both on
this list and in the= BIP's security-considerations section.

Comments-Summary: No com= ments yet.

Thanks,
corepool

--
You received this message because you are subscribed to the Google Groups &= quot;Bitcoin Development Mailing List" group.
To unsubscribe from this group and stop receiving emails from it, send an e= mail to bitcoindev+unsubscribe@googlegroups.com.
To view this discussion visit https://groups.googl= e.com/d/msgid/bitcoindev/4bbb1017-8080-4916-8f85-082d2ebf5eacn%40googlegrou= ps.com.

--
You received this message because you are subscribed to the Google Groups &= quot;Bitcoin Development Mailing List" group.
To unsubscribe from this group and stop receiving emails from it, send an e= mail to bitcoind= ev+unsubscribe@googlegroups.com.
To view this discussion visit https://groups.google.com/= d/msgid/bitcoindev/CACgYNOKLNCP4_CkWUU5H0cDCcwqbKY%2B%2BKxP33gjKJKOd861BFQ%= 40mail.gmail.com.
--000000000000c39227065a18643e--