Chart showing scalability (chainsize) and privacy tradeoffs in Bitcoin, Liquid, Grin, Monero, and Zcash.
The last 4 chains are representative of CT (Confidential Transactions), Mimblewimble, RingCT, and ZKSNARKs.
H2r denotes a possible future (memo-less) recursive Halo2 chain.
Privacy leaks
AMT,ADR,LNK | BTC
|
|
|
ADR,LNK | LQD
|
|
LNK | GRIN
|
I11 | XMR
0 | H2r ZEC(z2z)
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Chainsize (size of historical 2-input 2-output tx / 100 bytes)
In roughly decreasing order of importance:
AMT = amounts visible on-chain
ADR = on-chain addresses
LNK = input-output linkability in mempools
I11 = each input hiding among 10 decoys