Robinhood Chain exposes every deposit and withdrawal: amounts, destination, timing, and submitting account. Read the privacy boundaries before making a broader privacy claim.
Nullark keeps the private witness out of verifier calldata. Surrounding chain activity remains public. Compare the data kept locally with the data sent to Robinhood Chain.

Public on Robinhood Chain

Commitments and nullifiers are public protocol identifiers. They keep note secrets hidden while exposing their presence and timing.

Secret in the client

The trusted client handles material that must not enter logs, analytics, support channels, public issues, or arbitrary wallet prompts:
  • Note secret and blinding material
  • Recovery note or strict JSON recovery kit
  • Private-balance unlock signature and wallet-derived recovery root
  • Decrypted local note records
  • Merkle path and private proof witness
  • Wallet unlock authorization used for bound recovery flows
  • Intermediate values used to derive commitments and nullifiers
Public encrypted-note bytes protect their plaintext under the wallet-derived key and authenticated context. Browser compromise, unsafe clipboard handling, a disclosed unlock signature, or a disclosed bearer recovery note can expose it.

Fixed denominations

Fixed denominations constrain supported note shapes and make accounting predictable. They can also make amount classes easier to compare. Public details still include:
  • Deposit and withdrawal occurrence
  • Public destination and gross amount
  • Timing and wallet activity
  • Possible links between transactions
  • MEV exposure and chain-level visibility

What the submitter changes

Relayer submission changes who pays gas and which account appears as submitter. Destination, amount, fee, nullifier, proof, and pool transaction remain public. Connected-wallet submission additionally exposes the user’s submitting account onchain. Fast block and receipt updates improve freshness while preserving the same public transaction fields.

Current privacy scope

Current privacy coverage keeps witness and recovery secrets inside the trusted client. Anonymity, unlinkability, sender privacy, receiver privacy, amount privacy, MEV protection, and chain-level transaction privacy remain outside that scope. A future claim would need to state:
  1. The exact property and adversary
  2. The circuit, contracts, runtime, frontend, and operational assumptions
  3. The evidence connecting source, proving relation, verifier, and deployment
  4. Known leakage through amounts, timing, destinations, submitters, and user behavior
Broader privacy claims require the published analysis above.