Docs

Glossary

Short definitions for the words these docs repeat. Not a tokenomics appendix.

Status: design. XEROPAY is being built. These pages describe intended behaviour. Nothing here is claimed as live mainnet. Details can change. See What's live.

Note

An encrypted unit of value in the shielded pool. The explorer does not read its amount, asset, or owner. Your spending key opens it.

Commitment

A public record that a note exists, without revealing its contents.

Nullifier

A public record that a note has been spent, without revealing which note. Stops double-spends.

Stealth handle

A name people can pay. Each payment derives a fresh receiving address so the handle never maps to a running balance.

Spending key

The key that opens notes, signs spends, and issues viewing keys. Stays on your device.

Viewing key

Read-only access, scoped in time and often in vault. You issue it. It cannot spend.

Attestation

A yes-or-no proof about the account (balance above X, held N months) without opening the notes.

Edge

Where funds enter or leave. Screening and licensed ramps live here, not beside your notes.

Unshield

Exit to a named destination after checks. Not a mixer hop.

Vault

A labelled bucket of notes — save, spend, invest — still shielded.

Association set

A published set used so an exit can prove it is not joined to known-tainted deposits, without revealing which notes you spent.

Paymaster / relayer

Intended path to submit proofs and cover gas so you do not hold a public gas token next to private funds.

$XERO

Intended utility token for tiers and fee discounts. Not the product. No contract on this site until live.