Dual-State Ledger Architecture
A rigorous architectural overview of MOSOO's sovereign consensus, zero-knowledge note commitment trees, and dual-address cryptographic derivation.
1. Dual-Address Derivation & State Partitioning
Rather than forcing all transactions into an inefficient single layer or a completely surveillance-prone public ledger, MOSOO natively partitions account state into two complementary cryptographic domains:
Transparent Layer (soo1...)
PUBLICOptimized for decentralized exchanges, automated market makers (AMMs), liquidity pools, and smart contracts where global state readability and public verification are required.
Shielded Layer (mosoo1...)
CONFIDENTIALEncrypted notes protected by zero-knowledge commitments. Account balances, transfer amounts, and counterparties remain hidden from external observers and block explorers.
2. Zero-Knowledge Commitments & Nullifier Registry
When an asset is shielded on MOSOO, it is minted as a cryptographic commitment. When spent, an irreversible nullifier prevents double-spending, while any unspent change is automatically minted back to the sender's stealth address:
Commitment = SHA256("MOSOO:NOTE:" || RecipientAddress || Amount || Salt)
Nullifier = SHA256("MOSOO:NULLIFIER:" || Commitment || OwnerPrivateKey)
ChangeNote = SHA256("MOSOO:NOTE:" || SenderStealthAddress || ChangeAmount || ChangeSalt)
SHIELD_COMMITMENT (t ➔ z)
Transparent $SOO is locked into the sovereign privacy vault and converted into a blinded cryptographic note. The validator records the commitment hash into the state tree without storing the note value.
PURE SHIELDED TRANSFERS (z ➔ z) with Change Note Support
Transfer any flexible amount directly from one shielded stealth address to another. The recipient receives a new note, remainder change returns automatically to the sender, and on-chain records display only From: 🔒 Shielded ZK Pool and To: 🔒 Shielded ZK Pool.
UNSHIELD_NOTE & Nullifier Verification (z ➔ t)
When unshielding back to transparent state, the owner presents the nullifier. The network verifies that the nullifier has never been spent before, unlocks transparent funds, and permanently marks the note as spent.
3. Zcash Shielded Assets (ZSA) & Encrypted Memos (ZIP 302)
MOSOO extends zero-knowledge confidentiality beyond native currency to ecosystem tokens, dApp instructions, and private messages:
Multi-Token Shielding (ZSA)
Custom tokens, ecosystem assets, and community memecoins can be shielded alongside native $SOO. Note commitments preserve the tokenSymbol, allowing confidential token transfers.
ZIP 302 512-Byte Encrypted Memos
Every shielded transaction supports attaching up to 512 bytes of confidential payload. Ideal for invoice IDs, secret DEX swap parameters, and encrypted peer-to-peer messages.
4. High-Throughput BFT Consensus Loop
MOSOO runs a Byzantine Fault Tolerant consensus engine operating across sovereign validator nodes. Blocks are produced deterministically every 2000 milliseconds. Transactions submitted to the mempool trigger proactive block generation, ensuring sub-second settlement for interactive applications.