Skip to content

Risks and Disclaimers ​

Veilix moves value under a secret you hold. Read this before you deposit.

You can lose the funds ​

The note is the key. If every copy is destroyed and the note was not sealed to a wallet you can still sign with, the deposit is not recoverable. If someone copies the note, they can withdraw it. The protocol cannot reverse a completed withdrawal.

Amounts can identify you ​

The proof hides which leaf was spent. It does not hide the public deposit amount or the public withdrawal amount. A rare number deposited and then withdrawn is weak privacy, even when the proof is valid. Smaller trees (a quiet asset, or a quiet week) make timing correlation easier as well.

Fees and caps can change ​

Platform fee wallets and the per-tree deposit cap are configuration. A quote from a few minutes ago can differ from the fee the program enforces if configuration or the selected relayer changed. Confirm the quote you are about to sign against.

Software and operators fail ​

Proof generation can be interrupted. A relayer can be offline. The indexer can lag. A failed withdrawal after a successful deposit leaves the value in the note, which is safe only if you still have the note. A malicious or buggy client can mis-build a proof or leak a note. The chain will enforce whatever proof you actually produced.

Address screening refuses recipients the risk service marks as malicious. That is a product control. It is not a determination that any use of the protocol is lawful in your jurisdiction, and it is not a promise that every prohibited recipient is caught. You are responsible for how you use it.

No yield, no custody promise ​

Deposits do not earn interest inside the pool. The treasury is not a bank account. Veilix does not take possession of your note and does not promise to return funds if you lose it.

Documentation scope ​

This book describes the protocol as implemented by the Veilix program and SDK in this repository: variable-amount notes, one tree per asset, relayer plus platform fees, shielded balance, Private Send, and sealed note recovery. It does not describe unshipped products, a privacy score, or a token-economic schedule.