Privacy

Privacy on Solana is a set of application-level tools rather than a single network mode. The right solution depends on what your product needs to hide, who must be able to inspect it, and how much control the operating institution requires.

Privacy has explicit boundaries

“Private” does not mean the same thing in every model. Define whether you need amount confidentiality, participant anonymity, policy controls, private execution, or audit access before choosing an integration path.

Compare the three solutions

SolutionBest fitPrivacy boundary
Confidential BalancesConfidential Token-2022 balances and transfersAmounts and balances are private; accounts and transaction participation remain public
Solana Privacy RingsProgrammable onchain privacy and custom policiesDefault and custom Rings define whether assets, amounts, and participants are private
Private ChannelsInstitution-operated private executionChannel activity and data access stay inside an institution-controlled perimeter

Confidential Balances

Confidential Balances diagram showing public sender and recipient accounts, encrypted balances and transfer amount, optional auditor access, and network verification of a zero-knowledge proof

Confidential Balances is a Token-2022 extension for encrypting token balances and transfer amounts while continuing to use public Solana accounts.

  • Private: token balances and confidential transfer amounts.
  • Public: the mint, token accounts, account owners, and transaction participation.
  • Audit model: a mint may configure an optional ElGamal auditor key that can decrypt transfer amounts. It does not reveal an account's full balance or grant authority to move tokens.
  • Execution: the Token Extension Program updates encrypted state, while the ZK ElGamal Proof Program verifies the transfer proof on Solana.

Learn how Confidential Balances works, plan an integration, or configure issuer controls.

Solana Privacy Rings

Solana Privacy Rings diagram showing a permissionless Default Ring, a policy-controlled Custom Ring, private cross-ring transfers, and optional policy-defined auditor access

Solana Privacy Rings, documented by Helius as Solana Rings, provide encrypted onchain balances and programmable privacy through APIs. They are currently in beta.

  • Default Ring: permissionless and confidential. The asset and amount are private, while the sender and recipient remain public.
  • Custom Rings: Solana programs with configurable policy, compliance controls, and auditor visibility. Privacy can be configured to be confidential (encrypted asset and amount), or anonymous (encrypted asset, amount, sender, recipient).
  • Programmable privacy: build swaps, staking, yield, and lending using private escrow in Solana programs.
  • Native Solana Performance: Private transfers execute natively on Solana; no sequencer or sidechain. Balances are self-custodial. Transfers can move between Rings and settle in one transaction.

Read the Solana Privacy Rings documentation or try the demo.

Private Channels

Private Channels diagram showing a private channel inside an institution-controlled perimeter, hidden from external observers, with optional institution-granted auditor visibility and movement to and from Solana mainnet

Private Channels is private execution infrastructure for institutions that need operational control in addition to transaction privacy.

  • Inside the channel: transfers are private, instant, and have no set per-transaction fee.
  • Institution controls: the operator defines participation, access controls, ordering, rate limits, compliance requirements, and data visibility.
  • Audit model: external observers cannot inspect channel activity, while the institution can grant auditors the visibility required by its policy.
  • Mainnet relationship: value moves into and out of the channel through Solana mainnet while execution inside the channel remains private.

Explore Private Channels or view the product page.

Is this page helpful?

© 2026 Solana Foundation. All rights reserved.