Ship finance apps that keep a secret
Deploier gives builders on Robinhood Chain a settlement primitive with privacy in its design: a record format, a commitment scheme and a signing flow that already run on the practice desk. The escrow, registry and issuance contracts are written, tested and published with the source.
Build connected markets without giving up confidentiality
Privacy that scales with the deal count
Each record has its own salt and key, so a busy desk with thousands of settlements leaks no more than a quiet one.
Control stays with the parties
Only named wallets can accept or withdraw. The app builder cannot settle on a user's behalf without that user's signature.
Composable with the chain
Settlements reference real Robinhood Chain assets: USDG, WETH and the tokenized stocks. No wrapped copies, no bridge.
Get started
Read how the layer works, pick the market you want to serve, and build against the same shapes the contracts will use.
Explore the layer
How a private record and a public commitment stay consistent, what the chain carries and which rules every participant follows.
Move assets privately
Margin at any hour, repo against stock tokens and supplier payments in USDG, each written up as a flow with its risks and what can be tried today.
Developer reference
The commitment rule, the signed-ticket flow and every endpoint the practice desk calls, with the settlement contracts, their functions and events.
Patterns you can build on Deploier
Tokenized issuance
Issue a bill, fund share or receivable to an allowlist, keep the cap table private and publish only the commitment of each issuance.
Custody between clients
Custodians can settle between client accounts and show a regulator one record at a time with its view key, without opening the rest of the book.
Moving posted margin
Move posted collateral between venues as a private settlement, so the market sees that margin moved but not whose or how much.
Supplier payments in USDG
Pay suppliers and staff in USDG with invoices that stay between payer and payee, while the payment itself is final on the chain.
Round-the-clock financing
Repo-style deals that open and close on a Sunday night: cash against stock tokens, with both legs recorded privately.
“A market needs two things from a settlement: proof that it happened, and silence about what happened. We keep the first public and the second with the parties.”
Build on Deploier
Builders deserve a clear picture before they commit time.
Contracts written; addresses appear once deployed
- Available now: the record format, the commitment function, the signed-ticket flow and a public tape API, all exercised by the practice desk.
- Contracts: SettlementEscrow for atomic delivery against payment, AllowlistTokenFactory for issuer-managed holder allowlists, CommitmentRegistry for the on-chain tape. See the developers page for functions and events.
- Tell the team what you are building and what the contract interface must support.