Not true. If you make a system that is the same, but without the blinding step and using an HMAC from the server instead of a signature then it will be faster.