Connect your wallet
Use the wallet you already have. Next you'll sign one message — it derives your shielded keys right here in this tab. Nothing is sent to our server.
Preview every screen first — nothing to sign, nothing to install.
A viewing key can see but never spend. It stays in this tab.
Shield
Moves funds from your wallet into your shielded balance. This step is public (it shows your wallet depositing), which is why sends and unshields go through the relayer.
Send privately
Paste a shielded address (nvs1…), a nullvisor: payment link, or a 0x address that registered its key.
Receive
Your shielded address. It is not tied to your 0x wallet on-chain — share it freely.
Payment request
Viewing keys
Zcash-style selective disclosure. Give an accountant or auditor read access without giving them spend power.
Unshield
Pays out to any public 0x address. Recipient and amount become visible; who sent it does not.
ⓩ Exit to Zcash
Unshield straight into a Zcash wallet — Zodl/Zashi unified (u1…), Sapling (zs1…) or transparent. The relayer posts your proof, a one-purpose forwarder can only pay the swap solver, and ZEC lands on Zcash. No 0x address of yours touches it.
ⓩ Enter from Zcash
Pay from any Zcash wallet and receive a private USDG note here. Only your browser can claim it: a one-off claim key derived from your account signs the shield, so nobody who sees the deposit can redirect it.
Your notes
Decrypted locally from the public note log. Memos are visible only to you.
This session
Turnstile
Borrowed from Zcash: individual notes are private, but what enters and leaves the pool is public. If shielded − unshielded ever differs from the contract balance, something is wrong — anyone can check.
| Asset | In | Out | Balance |
|---|