Taproot
A soft fork from November 2021 that introduced Schnorr signatures and more flexible spending conditions. Complex arrangements such as multisig can look like a simple payment. Taproot addresses start with bc1p.
AlsoBIP 341P2TRPay-to-Taprootbc1pTaproot addressTapscript
Taproot is an upgrade to Bitcoin’s rules made up of three parts: Schnorr signaturesGlossarySchnorr signatureA digital signature scheme that Bitcoin introduced with Taproot in 2021, alongside ECDSA. Schnorr signatures are compact (64 bytes), provably secure and can be combined into a single joint signature.In the glossary → (BIP 340), the Taproot rules (BIP 341) and the Tapscript scripting language (BIP 342). It has been active as a soft forkGlossarySoft forkA change to the consensus rules that only tightens them. Blocks that follow the new rules remain valid for old nodes – so Bitcoin can be developed further without a chain split, as with SegWit and Taproot.In the glossary → since block 709,632 on 14 November 2021, after 90% of the blocks in a signalling period had signalled approval.[1],[2]
Two ways to spend bitcoin
- Key path: a single signature, as in a normal payment.
- Script path: one of several predefined conditions, for example ‘after one year, a backup key may also spend’. Only the condition actually used is revealed.
As long as the key path is used, nobody can see whether other conditions existed at all.[1] If all participants in a multisigGlossaryMultisig (multi-signature)A wallet in which several keys jointly control the bitcoin – for example 2 of 3. If one key is lost or stolen, the bitcoin stays safe. In return, setting it up and backing it up is considerably more demanding.On the learning path: Stage 6 · Step 4 – Inheritance & emergency plan →In the glossary → setup jointly produce a single signature, it too is indistinguishable from a simple payment.[3] This improves privacy and saves space.
Recognising Taproot
Taproot addresses start with bc1p and use the Bech32m format, an improved variant of the SegWit format (bc1q).[4] Some older wallets can’t send to them yet. In everyday use, you pay as usual.
Taproot scripts are also used to write images and text into the blockchain (OrdinalsGlossaryOrdinals (inscriptions)A protocol that numbers individual satoshis and links them to content such as images or text (‘inscriptions’). Usable by anyone since January 2023; the data sits in Taproot scripts in the blockchain. Its usefulness is disputed.In the glossary →). This is controversial; Forks & controversies explains both points of view.
Related terms
These terms are closely connected.
- This termTaproot
- Schnorr signatureA digital signature scheme that Bitcoin introduced with Taproot in 2021, alongside ECDSA. Schnorr signatures are compact (64 bytes), provably secure and can be combined into a single joint signature.
- SegWit (Segregated Witness)A 2017 soft fork that treats signature data (the ‘witness’) separately. It fixed transaction malleability, increased block capacity and makes payments with modern addresses (bc1q…) cheaper.
- Soft forkA change to the consensus rules that only tightens them. Blocks that follow the new rules remain valid for old nodes – so Bitcoin can be developed further without a chain split, as with SegWit and Taproot.
- Multisig (multi-signature)A wallet in which several keys jointly control the bitcoin – for example 2 of 3. If one key is lost or stolen, the bitcoin stays safe. In return, setting it up and backing it up is considerably more demanding.
- Ordinals (inscriptions)A protocol that numbers individual satoshis and links them to content such as images or text (‘inscriptions’). Usable by anyone since January 2023; the data sits in Taproot scripts in the blockchain. Its usefulness is disputed.
Explained in depth
These articles go into more detail:
- Deep dive · Stage 1Forks & controversiesSoft forks, hard forks, the block size war, Bitcoin Cash, OP_RETURN and BIP-110 – explained neutrally, with both sides and what to do if the chain splits.
- Deep dive · Stage 5Keys & addressesPrivate key, public key, address and seed phrase: how they fit together, why the path only runs one way and what 1, 3, bc1q and bc1p mean.
- Deep dive · Stage 1HistoryFrom the 2008 whitepaper via Pizza Day, Mt. Gox and the block size war to US spot ETPs and the 2026 split: Bitcoin’s history, concise and sourced.
More from „Technology“
Sources4 sources · 2 publishers
The superscript numbers in the text refer to these sources.
- BIP 341: Taproot – SegWit version 1 spending rules – Bitcoin Improvement Proposals, 19.01.2020 (accessed 28/09/2026)
- mempool.space API: block 709,632 (timestamp) – mempool.space (accessed 28/09/2026)
- BIP 340: Schnorr Signatures for secp256k1 – Bitcoin Improvement Proposals (accessed 28/09/2026)
- BIP 350: Bech32m format for v1+ witness addresses – Bitcoin Improvement Proposals, 16.12.2020 (accessed 28/09/2026)
This entry is for education only and is not investment, tax or legal advice.