Skip to content

LibraryPrivacy2016Design paperCorpus record

Zcash protocol specification

Zcash. Electric Coin Company and Zcash contributors.

The Zcash protocol specification is the document that defines shielded notes, nullifiers, and the consensus rules around them. It is not the Zerocash paper, and it is not a marketing page.

A reading of the project's public design document. Not a copy, not a benchmark, and not an offer.

The Zcash protocol specification is the document that defines shielded notes, nullifiers, and the consensus rules around them. It is not the Zerocash paper, and it is not a marketing page.
Evidence
Primary paper
Re-measured
No
Assumptions
3
Records linked
2

01 Claim ledger

What the paper is allowed to say

Each row is a sentence already in the study. The status is the same on every row: a model claim, not a live measurement.

  1. Claim 01 · Paper model

    The defect

    Zerocash is the research ancestor. The specification is what a client must implement, including the parts the paper never operationalised.

  2. Claim 02 · Paper model

    The proposal

    The Zcash protocol specification is the document that defines shielded notes, nullifiers, and the consensus rules around them. It is not the Zerocash paper, and it is not a marketing page.

  3. Claim 03 · Paper model

    The mechanism

    Shielded transfers spend notes and reveal nullifiers. The spec defines the bytes.

  4. Claim 04 · Paper model

    The bound

    This note does not restate the circuit.

02 Three cuts

Observation, model, falsifier

A desk does not stop at the summary. Each claim is cut three ways, using only this study's own assumptions and checks. Nothing here is a new figure.

  1. 01 The defect

    Observation

    What the study says

    Zerocash is the research ancestor. The specification is what a client must implement, including the parts the paper never operationalised.

    Model

    What has to hold

    You are reading the Zcash protocol specification. Zerocash remains a separate study.

    Falsifier

    What would retire it

    Which version of the protocol PDF is in front of you?

  2. 02 The proposal

    Observation

    What the study says

    The Zcash protocol specification is the document that defines shielded notes, nullifiers, and the consensus rules around them. It is not the Zerocash paper, and it is not a marketing page.

    Model

    What has to hold

    You are reading the Zcash protocol specification. Zerocash remains a separate study.

    Falsifier

    What would retire it

    Which version of the protocol PDF is in front of you?

  3. 03 The mechanism

    Observation

    What the study says

    Shielded transfers spend notes and reveal nullifiers. The spec defines the bytes.

    Model

    What has to hold

    No price, supply, yield, or adoption figure is added by this desk.

    Falsifier

    What would retire it

    What is public in a shielded transaction, according to that version?

  4. 04 The bound

    Observation

    What the study says

    This note does not restate the circuit.

    Model

    What has to hold

    You are reading the Zcash protocol specification. Zerocash remains a separate study.

    Falsifier

    What would retire it

    Which version of the protocol PDF is in front of you?

03 Sequence

One action, as an operating tape

  1. 01Shielded transfers spend notes and reveal nullifiers. The spec defines the bytes.
  2. 02Turnstiles, pools, and upgrades are named in the spec. A pool name from memory is not a citation.
  3. 03Consensus rules for issuance and fees sit beside the circuit. Privacy does not specify the monetary policy.

04 Load-bearing

The argument, and where a pitch drops it

  1. What the name has to mean

    The cut

    The Zcash protocol specification is the document that defines shielded notes, nullifiers, and the consensus rules around them. It is not the Zerocash paper, and it is not a marketing page.

    Why it carries weight

    If this cut is skipped, the paper's name is being used without the mechanism that makes the name mean anything.

    Where it is dropped

    The historic library's treatment of related work is not a substitute for this specification.

  2. What actually moves

    The cut

    Turnstiles, pools, and upgrades are named in the spec. A pool name from memory is not a citation.

    Why it carries weight

    If this cut is skipped, the paper's name is being used without the mechanism that makes the name mean anything.

    Where it is dropped

    A later client, parameter or reward formula is a different object from this paragraph.

  3. What a later deployment may change

    The cut

    Consensus rules for issuance and fees sit beside the circuit. Privacy does not specify the monetary policy.

    Why it carries weight

    If this cut is skipped, the paper's name is being used without the mechanism that makes the name mean anything.

    Where it is dropped

    This note does not restate the circuit.

05 Register

What has to be true

  • Model · Not re-measured

    You are reading the Zcash protocol specification. Zerocash remains a separate study.

  • Model · Not re-measured

    The document is the one at the source URL. A marketing page with the same brand is not this text.

  • Model · Not re-measured

    No price, supply, yield, or adoption figure is added by this desk.

06 Divergence

What happened after the paper

The historic library's treatment of related work is not a substitute for this specification.

A later client, parameter set, or reward formula is a different object. Cite this paper for the mechanism. Cite a primary release for the network. This desk has not re-run the proof.

07 Pre-mortem

What to check before you use the idea

  1. 0 of 3 marked on this browser. A mark is a reading note, not a pass, a rating, or a recommendation.

08 Anatomy

The paper, in the order a builder needs

The problem it names

Zerocash is the research ancestor. The specification is what a client must implement, including the parts the paper never operationalised.

What the design proposes

  • Shielded transfers spend notes and reveal nullifiers. The spec defines the bytes.
  • Turnstiles, pools, and upgrades are named in the spec. A pool name from memory is not a citation.
  • Consensus rules for issuance and fees sit beside the circuit. Privacy does not specify the monetary policy.

How the mechanism is specified

  • Shielded transfers spend notes and reveal nullifiers. The spec defines the bytes.
  • Turnstiles, pools, and upgrades are named in the spec. A pool name from memory is not a citation.
  • Consensus rules for issuance and fees sit beside the circuit. Privacy does not specify the monetary policy.

What this page does not treat as proven

  • This note does not restate the circuit.
  • It does not say which pool is active. The spec version you opened does.
  • The historic library's treatment of related work is not a substitute for this specification.

Why the desk still reads it

The Zcash protocol specification is the document that defines shielded notes, nullifiers, and the consensus rules around them. It is not the Zerocash paper, and it is not a marketing page.

09 Lexicon

Terms, opened into the record

Protocol specification
The operational document. It is not the research paper.
Shielded pool
A named set of notes with a defined circuit. Pools are not interchangeable.

10 Repository

Every linked record on this page

Underlined words open a page that already exists: a concept, a protocol profile, a failure record, or another paper. If a word is not underlined, this desk does not have a record for it.

This is Blockchain Lab's reading of a public design paper. It is not the paper, not a copy of it, and not an offer of tokens, equity, custody or a partnership. Later network behaviour can diverge from the text. Nothing here is investment, legal or technical advice.

Research status: Design paper. Last reviewed: 1 October 2026. This is a reading of a public paper, not investment, legal or security advice.