Skip to main content
PolyShield
POLYGON MAINNET · BETA
 POLYGON MAINNET · BETA

Trade prediction
markets, privately.

PolyShield is a zero-knowledge vault layer for Polymarket. Deposit USDC, place trades from a shared anonymity set, and settle privately — with cryptographic guarantees, not promises.

Network
Polygon
mainnet beta
Per-address cap
$50k
USDC
Avg proof time
30s – 2min
browser WASM
Proof types
9
circuits live
VAULT · SHARED EOADEPOSITORS · PRIVATE BETAPROOF RELAY · LIVE
Illustrative vault tape — not live data
● SIMULATED
KindVaultSubjectSizeState
VAULT TX0x……0x…YES · MARKET-A— USDCFILLED
PROOF0x……0x…BET-AUTHVERIFIED
VAULT TX0x……0x…NO · MARKET-B— USDCFILLED
SETTLE0x……0x…SETTLEMENT+—CREDIT
VAULT TX0x……0x…YES · MARKET-C— USDCFILLED
PROTOCOL

Five privacy primitives, one vault.

Each feature enforces one property of the privacy invariant. Together they are composable and independently auditable.
F.01

Private trading.

Every bet you authorize exits the vault as if it came from a shared pool of traders. No wallet-level attribution. Observers see the vault trade — they cannot identify you.

Depositor 10x0001Depositor 20x0002Depositor 30x0003Vault0x7a4fPMwhich depositor? unknowable.
F.02

Zero-knowledge proofs.

Bet authorization, settlement, and withdrawal are each gated by a ZK circuit. Your browser proves you are authorized — without revealing your note, balance, or identity.

Browserprove(π)384BRelay3-hopVaultcommitmentnullifiermerkle path
F.03

Strategy-safe execution.

Market orders, randomized relay delay, and decoy traffic eliminate timing correlation attacks. Your conviction stays yours — not alpha for copy traders and bots.

EXPOSED (today)wallet → polymarket fillSHIELDED (PolyShield)vault → polymarket fillobserved by anyone →copy bots, chain analystsobserved by anyone →vault traded · no attribution
F.04

Shared anonymity set.

Every depositor in the vault shares one Polymarket EOA. Every trade you authorize is cryptographically indistinguishable from every other depositor's trade. The anonymity set grows with every new depositor.

depositors · you indistinguishable
F.05

Non-custodial.

Your note is generated locally. Your secret never leaves your browser. The vault holds USDC — not your identity. Withdraw any time back to your own address with a ZK proof. Your depositing wallet is cryptographically bound inside the note commitment.

Your browsersecret = rand()never sentC = H(s,v)Vault contractcommitment treeUSDCwithdraw toyour ownaddress.
ARCHITECTURE

Eight components. One privacy invariant.

Select any node to see its role. Every component can be audited in isolation.
User WalletBrowser WASMProof RelayVault ContractMerkle TreeNullifier RegistrySigning LayerPolymarket
NODE ROLE
User Wallet

Signs deposit transactions. Never touches bet authorization on-chain.

LEGEND
On-chain (Polygon)
Relay network
Signing layer (v1 centralized)
User / Polymarket
SECURITY

What the protocol promises.

Soundness via ZK

Every state transition is gated by a circuit constraint. Invalid proofs are rejected on-chain. No admin backdoor.

Open-source contracts

Smart contracts are open-source and MIT licensed. This is beta software — review the threat model and deposit only what you can afford to lose.

No custody of secrets

Your note preimage never leaves your browser. The vault holds USDC, not your identity material.

Browser-side proving

Proof generation runs entirely in your browser via WASM. Expect 30 seconds to 2 minutes depending on device and circuit.

Private note ownership

A note is only spendable by whoever knows the secret. Lose the note, lose access — no recovery.

Nullifier protection

Every spent note produces a public nullifier. On-chain deduplication prevents double-spend without revealing which note was spent.

POLYGON MAINNET · BETA

Trade privately on mainnet.

PolyShield is live on Polygon mainnet in an open beta. Connect your wallet, deposit USDC, and place your first private bet. This is experimental software — deposit only what you can afford to lose.