How do I think about PMF for zero-knowledge proofs