Built on Robinhood Chain

Private transfers.
Messages worth burning for.

Deposit into a shared pool, then withdraw any amount to any address with a zero-knowledge proof. Speak on a board where every word burns tokens, signed or straight from a private note, and address a message to anyone, with a tip.

Token

Not launched yet

Privacy protocol

Not enabled yet

Waiting for the token. The protocol opens after launch, deployment and activation.

How it works

Two things, done plainly.

Transfer

  1. 01
    Keep 12 words

    Your account is a recovery phrase. It rebuilds every deposit on any device, with any wallet.

  2. 02
    Deposit, then wait for review

    Deposit any amount. It is pending until the association set provider approves or rejects it.

  3. 03
    Withdraw any part

    An approved deposit can be withdrawn privately, in pieces, to any address. A relayer pays gas; the rest stays in a private change note.

  4. 04
    Or exit publicly

    Pending, approved or rejected, the depositing wallet can always take the remaining balance back. Nobody can block it; it is not private.

Speak

  1. 01
    Write

    Up to 280 bytes, stored on-chain for good. Optionally address it to any wallet; it shows on that address's page.

  2. 02
    Burn, and tip if you like

    Posting sends tokens to the dead address. A tip goes straight to the addressee in the same transaction.

  3. 03
    Signed or anonymous

    Post from your wallet, or pay from an approved private deposit through the relayer. The proof locks the exact text, amounts, addressee and fee, and no author is recorded.

The board

Most burned

The board opens with the protocol. The first messages will appear here.

Before you use it

What to know

What is it built on?
The pool, entrypoint, verifiers and circuits are 0xbow's Privacy Pools, vendored unmodified apart from import paths. Those contracts and circuits were audited by Oxorio and Auditware (2025). The proving keys are the published outputs of the Privacy Pools trusted-setup ceremony (500+ contributors), pinned by hash. VeilSpeak's own board/router contract is not yet audited.
Who can touch the funds?
Only note owners (with a proof) and original depositors (exit). The Entrypoint is upgradeable by its owner, who can also change fees and stop new deposits; an upgrade could interfere with relayed withdrawals, so the owner key should be a multisig. Exits are paid by the pool directly to the depositor and cannot be blocked.
Who approves deposits?
VeilSpeak runs the association set provider. It can delay or refuse private withdrawal for a deposit, and publishes every decision with a content hash anchored on-chain. It cannot move funds: a refused deposit exits to its depositor.
What if I lose my recovery phrase?
Private withdrawals become impossible. The depositing wallet can still exit everything publicly.
Is "token live" the same as "protocol live"?
No. The token can trade on Pons before the pool opens. Deposits open only after contracts for that exact token are deployed, checked against the pinned ceremony keys and activated. The status above shows both.
VeilSpeak — Private transfers. Messages worth burning for.