Fuyu Protocol
Learn how the Pool stores private notes and executes spends and external actions.
Core and surrounding contracts#
The selected core embeds its verifier and has no proxy, verifier setter, administrator withdrawal or forced migration. Its ordinary exit follows the original ownership and accounting rules. New features use peripheral contracts and offchain tools.
The publisher controls admission data, supported tokens and action routes. It has no private account keys or custody authority through those permissions.
| Component | Handles |
|---|---|
| Pool and verifier | Reserves, notes, nullifiers and the original spending rules |
| Adapters | Permitted venue calls and measured returns |
| Router | Ordered transactions without taking custody |
| Controllers | Extra approval for Safe or claim notes |
| Portals | Plain transfers credited to a fixed private recipient |
| Directory | Receiving descriptors and key generations |
| App and proving workers | Account recovery, proof preparation and holder consent |
Ask questions with FPL#
FPL and holder-run proofs let the holder choose to answer supported questions. They do not change spending permission. The Pool stores opaque policy attachments without interpreting the language.
Check which questions the audit compiler supports. FPL syntax, a local evaluated answer and a verified proof are different outputs with different uses.
Using the implementation#
The repository includes contracts, circuits, test files and a development app. It uses development proof keys. Production keys, independent review, mainnet and physical-device acceptance are still outstanding.
Use the specifications and whitepaper when building an integration. Before using a deployment, check its runtime and proof-file hashes against the release you intend to trust.