
Gloam
io.github.cryptoduke01v1.1.0更新于 Oct 6, 2026
Private stablecoin payments for people and AI agents, hosted or local with spending limits.
概览
Gloam 让助手在测试网上规划并在持有本地密钥时执行隐私稳定币支付与屏蔽余额操作。
- 功能
- Gloam 是隐私链上支付系统的代理接口。托管服务器 gloam.trade/mcp 只读且只做规划:报告网络与资产、金库统计、支付请求链接、证明校验、存款计划和支付操作说明。本地 npm 服务器还能签名并提交隐私转账、提现和 x402 工具支付,并提供代理支出限额与支出报告。备注密钥保存在加密存储中,代理只能看到句柄。
- 适用场景
- 当助手需要在受支持的测试网上发起或规划隐私稳定币支付、为 HTTP 402 工具付费,或查询屏蔽余额与证明时,值得添加。只做只读查看时用托管端点;只有助手确实需要在所有者设定的限额内签名并支出时,才安装本地服务器。
- 运行要求
- 使用 gloam.trade/mcp 远程端点(无需安装),或用 npx 运行本地 npm 包。签名需要密钥 GLOAM_AGENT_PRIVATE_KEY,可选配合 GLOAM_TEMPO_ACCOUNT 使用受链上限额约束的 Tempo 访问密钥;备注存储由密钥 GLOAM_NOTE_KEY 加密。需要访问受支持测试网的网络。没有代理密钥时工具只能读取和规划。
安装
在 SourceWeft 中
- 打开 控制台中的 Gloam,将其添加到工作区。
- 为需要使用其工具的对话启用该服务。
Web executable,通过 Streamable HTTP。 远程服务在工作区中配置后即可从网页运行时运行。
其他 MCP 客户端
把它添加到你客户端的 mcpServers 配置中。
{
"mcpServers": {
"gloam": {
"type": "http",
"url": "https://www.gloam.trade/mcp"
}
}
}README
Gloam
The privacy layer for onchain finance. Shielded balances, private payments, and verifiable disclosure that any app or agent can plug into.
gloam.trade · Testnet app · Verify a disclosure · Docs · Whitepaper · @gloamtrade
Robinhood Chain 46630 · Tempo 42431 · testnet only, real ZK proofs, no mock fills
Public chains put finance on public rails: every holding, every size, every move is visible. Robinhood Chain does it for tokenized stocks and crypto; Tempo does it for stablecoin payments. Gloam is the sealed chamber on top. Shield a balance, pay privately, and later prove exactly what you choose to a counterparty or auditor, and nothing else. It is not a dark theme on a public DEX; it is a private-execution primitive that other onchain apps and AI agents build on — live today on Robinhood Chain (flagship) and Tempo.
Three surfaces, one private core
The vault app is the reference implementation, not the whole product.
All three share one core: a Poseidon note scheme, a depth-20 incremental Merkle tree, circom witness builders, real Groth16 verification, and one canonical intent shape.
What works today (testnet, real ZK proofs)
Every private action is proof-gated on-chain. No mock fills, no theatrical privacy. If a path cannot be both private and solvent yet, it waits. See contracts/audit/H1-SWAP-SOLVENCY.md.
Selective disclosure: private by default, proven by choice
The answer to the "dark pool" objection. A holder mints a disclosure for one note; the recipient verifies, entirely in the browser, that the holder owns that exact balance in the vault, without learning their identity, their note secret, or any other holding. It reuses the shield circuit (no new trusted setup): the proof binds the commitment to (amount, asset), and the verifier confirms the commitment is a live note via pool.commitmentSeen. Generate at /app/disclose, verify at /verify.
Robinhood Chain native
Robinhood Chain is an Arbitrum Orbit L2 (Nitro, mainnet live since July 2026), ETH gas, Ethereum blob DA. Gloam targets what the chain actually ships:
- Chainlink oracles from block zero. RH Chain prices tokenized equities on-chain via standard
AggregatorV3feeds. Gloam'sOracleRatesmodule binds sealed-trade rates to the live feed with L2 sequencer-uptime, staleness, and positivity guards, and a ratio-tolerance check that is also on-chain slippage protection. Built and tested (contracts/src/lib/OracleRates.sol); it activates when private trade re-enables. - Tokenized stocks are ERC-20s (18 decimals, ERC-8056 Total-Return value). Gloam shields the canonical set (TSLA, NVDA, AMZN, and more).
- Groth16 runs native. bn254 pairing precompiles are present and the 96 KB code-size cap fits large verifier contracts, so shield / unshield / transfer proofs verify with no special infra.
- First-class ERC-4337 opens the door to gasless private transactions.
Live on Tempo
The same private core now runs on Tempo, the payments-first stablecoin L1, as private stablecoin payments for people and agents. Tempo ships its own operator-run privacy (Zones); Gloam is the self-custodial, permissionless complement, with issuer-compatible selective disclosure. The sealed pool and verifiers are deployed on Tempo Moderato (42431), and the app's runtime network toggle switches the whole product between chains — shield PathUSD, send, and cash out, proof-gated end to end. Because Tempo blocks native msg.value and pays gas in stablecoins, Gloam shields ERC-20 stablecoins there instead of a native asset. Design and constraints: TEMPO_EXPANSION.md.
Trust, verified
Privacy earns the mainnet gate only when it is auditable and correct.
- Self-audited, then re-verified. A Kensho pass found a critical funded drain, two highs, and a set of mediums in the sealed pool and client. Every critical and high is fixed and verified on-chain and in code (independent re-audit): the drainable pool drained and de-published, value-binding enforced at deposit (C1), the swap path disabled (H1), the re-open path closed (one-way verifier + two-step ownership). Full status:
contracts/audit/REMEDIATION.md. - No middlemen. Redeployed 2026-09-29 on both networks with no admin withdraw: nobody, including the team, can move pooled funds, and after setup every verifier, rate or oracle change must be queued on-chain 3 days ahead (
endSetup(),queueChange, 93/93 tests). VerifysetupMode() == falseon the pools listed below. - Selective disclosure, not a mixer. Prove balance or a payment to a counterparty or auditor without revealing everything. The right posture for a regulated-sponsor chain.
- Fast vault sync, same privacy. The app loads the vault's public leaf list (every commitment, in order) from
/api/vault-leavesin one request instead of walking the chain, rebuilds the Merkle tree in the browser, and uses it only if the root matches the pool's on-chain root; otherwise it reads the chain itself. The request names only the network and is the same for everyone, so the server never learns which notes are yours. - Honest gates. The trusted setup is a dev ceremony and mainnet needs a multi-party one; note secrets are encrypted at rest (AES-GCM under a device key, audit M-1), though the key is device-bound. These are disclosed, not hidden. Mainnet
4663is blocked in-product.
Using the SDK
Deposit privately into the hardened pool in a few lines. The SDK mints the note and generates the shield proof; you sign the resolved call.
A complete runnable agent is in examples/agent-shield.
Architecture
Contracts — Robinhood Chain testnet 46630
Contracts — Tempo Moderato testnet 42431
The pre-C1 RH pool 0x4F38… is drained and retired, never use it. Circuits (Groth16 + Poseidon + depth-20 Merkle membership): shield, transfer, unshield, sealedSwap. Details in contracts/ARCHITECTURE.md.
Local
Run the reference app from app/ (next dev), or open gloam.trade/app. The in-app network toggle switches between chains. Robinhood testnet ETH + stock tokens: faucet.testnet.chain.robinhood.com. Tempo test stablecoins (PathUSD and friends): the Tempo faucet (tempo_fundAddress).
Guardrails
- Testnet only until a production ceremony + external audit. Mainnet
4663blocked in-product. - Real privacy only. Never fake or mock a private success.
- Selective disclosure over opacity. Verifiable, not just hidden.
- Brand: Twilight, paper
#F4F3EF, ink#121316, indigo#3B3766. Light, spacious, plain-language.
No private keys in-repo. Deploy with DEPLOYER_PK env only. Circuit zkeys are dev-ceremony artifacts. See SECURITY.md.
来源:README.md,提交 291f7da
工具
0版本历史
1- v1.1.0最新Oct 6, 2026

