Limit orders nobody else can read.
Set a price, a size and a deadline. Only a hash goes on-chain. When the market gets there, a solver fills you and proves on-chain that it kept to your terms — without ever publishing them.
- chain
- Robinhood Chain · 4663
- proof
- Noir → UltraHonk, verified on-chain
- venues
- Uniswap V2 · V3 · V4, SushiSwap V3
- fee
- 0.02% of output, capped at 0.5%
- custody
- Vault escrow · cancel any time
Order ticket
limit · sellSet up stealth keys on the Privacy page first.
This relayer does not sponsor gas.
1 order: 0.01
Encrypt only to solvers whose enclave attestation the relayer verified.
Public: your deposit and a hash. Private: what you buy, your price, your deadline. Safe wallets can sign via EIP-1271 (createIntentFor).
Or type the order
plain EnglishMy orders
What happens to an order
Four steps. Your limit price, deadline and DCA schedule never leave the encrypted envelope.
- 01commit
You escrow the sell side and post a hash.
c = keccak(user, tokenIn, tokenOut, amount, minOut, schedule, deadline, nonce, salt) - 02encrypt
The terms go to one staked solver, encrypted to its key.
x25519 → XChaCha20-Poly1305, AAD = c · via relayer, not the mempool - 03wait
The solver watches every route until your price is there.
quote V2 / V3 / V4 / Sushi, net of fee ≥ minOut - 04prove
It fills with a proof that the hidden terms were met.
verify(proof, c, amountOut, execTime) → swap → fee → you