ConceptsArchitecture Overview
Concepts

Architecture Overview

BlackVault is a client-heavy wallet with a thin, privacy-preserving server. The browser holds keys and does the sensitive crypto; the server only ever relays and verifies — it never sees your keys.

System map

Design principles

PrincipleConsequence
Keys never leave the clientThe server can’t move or see funds
Nothing sensitive at restStealth keys are derived per session, not stored
Every fetch is same-originNo third party correlates IP with address
Standard contracts onlyCanonical ERC-5564 / 6538 singletons, no custom mixer
Fail-safe orderingAnnounce → verify → transfer; receipts checked each step

Component responsibilities

  • Wallet UI — the whole product surface; fully open in the public repository.
  • Stealth rail — derives your identity, computes one-time addresses, scans announcements, and claims funds. See Stealth Transfers.
  • Names service — issues subnames, verifies on-chain payment, and signs CCIP-Read answers. See Names Architecture.
  • Privacy proxies — relay RPC/prices/news/images so metadata never leaks. See Privacy Proxies.
  • Biometric lock — a device WebAuthn credential gating the UI. See Biometric Lock.

Chain layer

Robinhood Chain (Arbitrum Orbit L3, chainId 4663). A dual-RPC split keeps reads fast and log scans wide:

The chain layer is defineChain + adapter-based, so adding Ethereum, Arbitrum, Base, or Optimism (staged in the UI as Soon) is configuration, not a rewrite.