Building on Base

Hold dollars.
Keep them private.

Mint PUSD, a dollar that will be backed 1:1 by native USDC on Base — then opt in to the shielded pool, with zero-knowledge proofs generated in your browser.

How it works

Three steps, one dollar.

Mint a public dollar, shield it when you want privacy, redeem it back — no lockups, and no pause path on the way out. The same dollar you put in, all the way through.

Step 01

Deposit USDC,
mint PUSD.

Send native USDC on Base and receive PUSD 1:1, with no fee on the ramp. What you get is an ordinary, fully public ERC-20 — one PUSD for every USDC the vault locks.

9:41
usePrive
Base

Deposit & mint

Mint PUSD

You deposit

$

USDC

Native · Base

1,000.00

USDC

You receive

PUSD

1:1 USDC-backed by design

1,000.00

PUSD

Rate 1 USDC = 1 PUSDRamp fee None

1:1 redeemable · no lockups

Step 02

Opt in to
the shielded pool.

Privacy is a step you take, not a default you inherit. Shield your PUSD and it becomes a private note: from then on, amounts and counterparties stay off the public ledger, while zero-knowledge proofs — generated locally in your browser — still prove every transfer is valid.

9:41
usePrive
Base

Shielded balance

PUSD · Shielded

Hidden by a zero-knowledge proof

Shielded because you opted in
Proofs run in your browser

Recent activity

Sent

To ••••

•••• PUSD

Received

From ••••

•••• PUSD

Private, not hidden from math

Step 03

Redeem back
to USDC, unpausably.

Burn PUSD and withdraw native USDC 1:1, fee-free, whenever you want. No lockups, and no pause path: redemption is the one thing the guardian cannot switch off.

9:41
usePrive
Base

Redeem

Redeem to USDC

You redeem

PUSD

Available ••••

500.00

PUSD

You receive

$

USDC

Native · Base

500.00

USDC

Rate 1 PUSD = 1 USDCRedemption fee None

No lockups · No pause path

Privacy, on your terms

Dollars that mind their own business.

On most chains, your balance and every payment you make are public by default. Privé keeps the dollar exactly as it is — and gives you a shielded pool to step into when the amounts are nobody else's business.

Privacy you opt into

Minting gives you a public dollar. Shielding it — a separate, proof-gated step — is what makes the balance yours alone. A deliberate choice, not an inherited default.

Fully backed

Every PUSD will be backed 1:1 by native USDC locked in the vault — the contract cannot mint one without locking the other. Private doesn't mean unbacked.

Redeem, unpausably

Burn PUSD for native USDC 1:1, fee-free. No lockups, and no pause path — redemption is the one thing the guardian cannot switch off.

Built on Base

Native USDC and low fees, secured by an Ethereum Layer 2. Familiar rails, quieter ledger.

How the privacy works

Shielded by zero-knowledge proofs.

Once you shield, Privé works on zero-knowledge proofs generated in your own browser. Your shielded balance and the amounts you send stay off the public ledger — yet the math still proves, to anyone, that every transfer is valid and fully backed.

It's privacy for normal people — payroll, savings, a quiet treasury — not a way to hide where money came from.

  • Amounts & counterparties stay off the public ledger
  • Validity is still provable to anyone — no trust required
  • Proofs run locally in your browser; no proving service, no middleman holding your funds
Zero-knowledge
Shielded transferBase
From0x9f4c…2e1a
To••••••••••
Amount•••••• PUSD
Proof valid· fully backed, amounts hidden
One dollar, two states

Public PUSD & shielded PUSD, side by side.

There is only one token. Minting gives you the public version; shielding — a separate, proof-gated step you choose to take — turns it into a private note. Same dollar, same backing, different visibility.

PUSD

Public

The dollar you mint. Ordinary, and fully visible.

A standard 6-decimal ERC-20 on Base that will be backed 1:1 by native USDC — the contract cannot mint one without locking the other. Your balance and every transfer are public, exactly like any other token.

  • 1:1 native-USDC-backed on Base by design
  • Balances & transfers are public
  • Mint and redeem fee-free, with no lockups
Contract · Base0xPublished at deploy
Backed by design · Public · Redeemable

Shielded PUSD

Opt in

The same dollar, once you choose to shield it.

Shielding moves your PUSD into the pool as a private note. It is a separate step, gated by a zero-knowledge proof your browser generates locally — nothing happens automatically at mint.

  • Amounts & counterparties stay off the ledger
  • Proofs generated locally in your browser
  • Unshield back to public PUSD, once the guardian has accepted a covering root
Contract · Base0xPublished at deploy
Opt-in · Proof-gated

Minting is public · shielding is the step that makes it private

Roadmap

Where we're headed.

Nothing is deployed yet. This is the order we're doing it in — in the open, one deliberate phase at a time, and without dates, because immutable contracts ship when the review says they can.

01Done

Contracts & circuits

The immutable core — vault, ramps, shielded pool, note memo — plus the Noir circuits that prove every shield, transfer and unshield. Written, and green end to end under test.

02In progress

Testnet rehearsal

The whole round trip on Base Sepolia against the real contracts, the real proofs and the real browser client: mint, shield, private send, unshield, redeem. Rehearsed until nothing surprises us.

03Planned

Independent review & bug bounty

External security review of the contracts and the circuits, plus a public bug bounty. Findings and reports get published when they exist — we will not claim an audit we do not have.

04Planned

Guardian multisig from genesis

The guardian is a Safe multisig from the very first deploy transaction, never a single key. Its whole authority: pause entries, append association roots, and own the screening blocklist.

05Planned

Mainnet deploy on Base

Deploy the immutable contracts, verify the source, and publish every address on this site. Until that transaction lands, nothing is live — and the app says so on every chain.

06Planned

Compliant privacy

Association sets with selective disclosure — prove your funds are clean without exposing anyone else, and let honest exits stay honest without deanonymizing the pool.

07Planned

Private payments

Payment links, requests, and recurring transfers — so PUSD is something you spend, not just something you hold.

08Planned

The bridge door

A documented, one-way path for holders of the earlier MaskedUSD deployment — still live and unpaused on Base until the wind-down, which comes after this deploy is accepted: redeem there, mint here. No automatic migration, no snapshot, no claim created by holding the old token.

FAQ

Questions,
answered.

The honest version — what Privé is, what it isn't, and where it stands today.

Still curious? Ask in the Telegram

No. The contracts are written and tested, but nothing is deployed — there is no Privé contract address on Base or anywhere else. The app runs, and on every chain it tells you the protocol isn't deployed there yet. When the mainnet deploy lands, every address gets published on this site and you'll be able to verify them on Basescan.

Support

Need a hand?

Questions, stuck, or just want to dig deeper? The support hub and community have you covered.

Get support