Methods, systems, and devices for
data management are described. A signing device may cryptographically sign, using a private key, a message and output a signature including a random elliptic-curve element and a scalar. The signing device may encrypt the scalar using a publicly-
verifiable encryption scheme and via an
encryption key, where encrypting the scalar using the publicly-
verifiable encryption scheme generates an encrypted scalar and a proof of
encryption. The signing device may provide the random elliptic-curve element, the encrypted scalar, and the proof of
encryption to a verifying device such that the verifying device may determine whether the random elliptic-curve element and the scalar form a valid signature for the message. The verifying device may determine, without knowing the scalar in decrypted form, whether applying the encrypted scalar to a first public value produces a second public value.