Cashu tokens are still power-of-2 denominations, right?
Wen confidential amounts?
The new generation of ecash wallets is looking pretty good 😎
How it started:
https://void.cat/d/Bx1tTwXi1TsvpGVUDaVESM.webp
How it's going:
Cashu tokens are still power-of-2 denominations, right?
Wen confidential amounts?
Yes, they are 2^n.
We aren't looking into confidential amounts yet :) What would be the use case or how would it work?
With confidential amounts you'd have better anonymity guarantees. With public denominations, each denomination effectively has its own anonymity set, which might especially affect user anonymity when different denominations are combined, and the issuer knows a per-denomination lower bound on a user's funds and upper bound on amounts being transferred between users.
I'm still trying to wrap my head around the cryptography needed for confidential amounts. I think each token has to be bigger by some constant factor, but each user only needs to store a single token. And someone might have a single token worth 4.2 BTC and remain in the same anonymity set as someone with a balance of 69 sat.
UX-wise there should be no difference, but it could be made insanely private, with the issuer not even knowing whether a particular user is sending, receiving or just renewing a token.
You should join us here!