A new proposal aims to add Zcash-style privacy to Bitcoin transactions without changing the network’s consensus rules.

Proposal mechanics

Researchers from Alloc Init introduced Shielded Bitcoin, a protocol that hides transaction amounts, senders, receivers and connections to prior outputs. The design stores encrypted notes on Bitcoin, treating the chain as a neutral layer for ordering and publication. Separate software called indexers reads those notes, checks zero-knowledge proofs that validate each transfer and ensures no note is spent twice. By keeping the base chain unchanged, the approach avoids the need for a soft fork.

Comparison with Zcash

The construction mirrors Zcash’s architecture: it employs encrypted notes, public nullifiers that mark spent outputs and zero-knowledge proofs to prove correctness. Unlike Zcash, Shielded Bitcoin does not launch its own blockchain or consensus mechanism; it leverages Bitcoin solely for data ordering. The paper notes that the privacy guarantees depend on the size of the shielded pool, which initially contains only the notes created by early users.

Community reaction

Developer Vadim Zavodil warned that a fresh shielded pool begins with an anonymity set of one, limiting early privacy benefits. He argued that the value of privacy grows with the number of participants, a metric Zcash has built over years.

Pierre-Luc Dallaire-Demers of Pauli Group praised the idea’s creativity but flagged that the current design offers no resistance to quantum attacks. He said he is exploring how a post-quantum version could look if Bitcoin eventually adopts quantum-safe signatures.

Eli Ben-Sasson, co-author of Zerocash and CEO of StarkWare, expressed support for the overall direction. He recalled that the original Zerocash paper sought to bring privacy to Bitcoin and said he would like to see the vision of scalable, zero-knowledge-based privacy realized on Bitcoin’s base layer.

Why it matters

If adopted, Shielded Bitcoin could give users stronger confidentiality without requiring a contentious protocol upgrade. However, its success will hinge on attracting enough participants to create a meaningful anonymity set and on addressing potential quantum vulnerabilities. The proposal highlights ongoing efforts to layer privacy solutions atop existing cryptocurrencies rather than altering their core rules.