You are reading content from Scuttlebutt
@Dominic %MFyi2IxHxauJjSPgl/khb5z+8f5rXrtaph/a47cpyww=.sha256
Re: %Zi83P95k/

I was having trouble imagining why you'd need Publically Verifyable Secret Sharing. In dark-crystal, the dealer backs up their own secret. It wouldn't make sense for them to send some peers an invalid share.

Then I noticed that the PVSS designs mention secure voting. Often a voting scheme will have some sort of adjudicator that tallies or otherwise processes the votes, and if they are the dealer then we obviously we want them to be forced to distribute correct shares.

Verifable Secret Sharing is obviously good though, so you can tell if a holder returns an invalid share.

Join Scuttlebutt now