Thank you for your work. I’ve also researched pairing-based WE before. As far as I know, building WE for constraints beyond linear equations with pairings alone seems impossible.
Does the article below explain your construction and security proof?
🔐 Introducing zkEnc: Witness Encryption for Circom Circuits
Built at ETHGlobal Online 2025, zkEnc lets you encrypt with a QUESTION and decrypt with an ANSWER—no need to know who the recipient is!
🔗
📦 Open source:
Thread 🧵👇