pull down to refresh

I think one of the most valid critics against bitcoin is about its privacy and it's one that Monero people always cite. One argument that I think is good is that dark markets are always transacted with XMR, showing that it's the only private solution out there. I guess BTC has coinjoins and other tools, but they comes at a cost and do not always assure full privacy. There's also lightning, but the receiving node privacy is not that good either.
I don't know much about ecash or dark markets, but the way I see it ecash is very hard to track once it leaves the mint, right? Would that be a solution for fully private transactions? Is it actually being used now on those markets?
Maybe @calle can enlighten us on this.
I think one of the most valid critics against bitcoin is about its privacy and it's one that Monero people always cite.
The privacy available on the lightning network is superior to the privacy available on monero.
As just one example, consider receiver privacy. On monero, the sender always knows what address on the blockchain received the money he sent to the recipient; on lightning, this is not true. The recipient's node pubkey does not receive the money, it's only used for communication. The address on the blockchain that received the money is a 2 of 2 multisig that is hidden via the use of short channel identifiers and blinded paths. And the transaction putting it there is an off-chain transaction between the receiver and their channel partner -- the sender does not get to see it. So lightning "receiver privacy" is better, in this respect, than monero.
One argument that I think is good is that dark markets are always transacted with XMR, showing that it's the only private solution out there.
Not all DNMs use monero; some use lightning instead. Two darknet markets that support lightning are Bisq2 and Robosats.
There is also open source DNM software that supports lightning (Squeak Road) but I don't know of any significant DNMs that use it.
reply
One of the downsides of LN for DNMs is the always online and interactive nature of LN which brings its own opsec issues
reply
Bisq2 and Robosats?
Lol
reply
So lightning "receiver privacy" is better, in this respect, than monero.
What about the IP address of the receiver? Isn't that gossiped around?
Two darknet markets that support lightning
Are there people who sell weed on Bisq2 or Robosats?
reply
What about the IP address of the receiver? Isn't that gossiped around?
No. The recipient's node is not exposed to the network unless you specifically configure your node to route payments, and even then, you can use tor to hide your IP.
Are there people who sell weed on Bisq2 or Robosats?
I haven't seen any.
reply
What about the IP address of the receiver? Isn't that gossiped around?
Mhh ok, I guess you can avoid that by running your node only on Tor.
But still: All arguments about receiver privacy on lightning seem to ignore that it's still much easier to achieve privacy on monero since it is private by default. For example, with monero, you don't need to run a Lightning node to receive payments.
reply
it's still much easier to achieve privacy on monero since it is private by default
I think this leads people to get arrested. The monero users who got arrested in October (link) probably assumed that by merely using monero, they couldn't be tracked. But if you aren't careful in many other respects, you can be.
  • You have to be careful to use tor to communicate with your peers
  • You have to be careful who you peer with
  • You have to be careful to remix your old utxos frequently so they don't stick out
  • You have to be careful not to create a transaction that spends utxos that you received "close together"
Similar considerations apply to lightning. Neither network protects you if you are careless in these other regards. Comments like "monero is untraceable by default" or "if you want privacy, just use monero and you're done" might very easily get people arrested if they believe them and then don't take care of their privacy in other respects.
It's similar with lightning; you can't "just use lightning" if you want decent privacy. But it offers better tools than what you get on monero.
reply
The bar to achieve solid privacy on Lightning is higher than Monero
reply
there is free and open source software for tracing monero transactions: https://github.com/supertestnet/examiner/
care to show me some tools for tracing lightning payments? it's much harder to do, since there's no blockchain to analyze where everyone publishes their transactions
to trace lightning you'd have to subpoena records from routing nodes with the following hurdles:
(1) you don't know which ones to subpoena, so you'd probably have to subpoena all of them (2) most of them run on tor, meaning you don't know where to send the subpoena (3) even if you get the subpoena to them, they might be in a jurisdiction where your subpoena has no authority -- so good luck getting a reply
it's pretty simple, really: with monero, you've got lots of data to analyze to find the sender; with lightning, you don't
here's a podcast where I go into more details about this: https://x.com/saucy_xmr/status/1842664585377010175
reply
Those criminals were caught in your first link because of the fiat on/off ramps they were using and feds in their groupchat. Nothing to do with Monero.
Your tool doesn't deterministically "trace" anything. All it does is let's you see the Monero blockchain which you can already do with any Monero block explorer: https://www.p2pool.io/explorer/
A chain analysis company is claiming to "trace" Monero without evidence and that doesn't give you pause or see a conflict of interest in that? Or maybe a generous way of using the word "trace"? From your own article: “It is extremely unlikely that Ciphertrace can trace Monero to the remote extent that they can trace any other coin"
I do think Lightning privacy is better than on-chain Bitcoin and can be used with strong privacy, but that bar is obviously higher than using Monero at the moment as vast majority are using custodians and LSPs which both diminish Lightnings privacy guarantees.
Using a remote node on Monero, behind Tor/VPN, is much more accessible. You don't have to give up custody like LN custodians, or the same degree of privacy as LSPs. And malicious remote nodes can't see amounts, addresses, balances, etc: https://localmonero.co/knowledge/remote-nodes-privacy
reply
Those criminals were caught in your first link because of the fiat on/off ramps they were using
Link?
and feds in their groupchat
Source?
All it does is let's you see the Monero blockchain which you can already do with any Monero block explorer
It also does this: for about one in five transactions, it automatically eliminates every decoy spender and heuristically identifies the real spender. It does this by exploiting weaknesses in monero's decoy selection algorithm that are widely known in the monero ecosystem and actively being fixed, e.g. through FCMPs. I've never seen a monero block explorer do that.
vast majority are using custodians and LSPs
Do you have evidence of this?
which both diminish Lightnings privacy guarantees
They have tradeoffs. The custodian or LSP knows additional data about your transaction; everyone else knows less data. Some LN custodians and LSPs have really good privacy policies (e.g. most ecash mints) and that is possibly why some LN users prefer to use them rather than do all the work themselves.
Using a remote node on Monero, behind Tor/VPN, is much more accessible
And much less private. P2P traffic is not encrypted on monero so in addition to seeing all your transactions (which, in monero, expose a lot of your data), your peers also get extra data about where a transaction originated. Dandelion helps with this, but it's not foolproof. P2P traffic ought to be encrypted imo like it is on lightning, so that your peers cannot see whether the message you are sending is a transaction or a probe or something else. (You know, like we do in lightning.)
Is Liquid more or less private than Lightning?
I realize this is a dumb question
reply
Liquid is less private than lightning
  • every liquid transaction exposes the sender's address to everyone who cares to look
  • every liquid transaction exposes the recipient's address to everyone who cares to look
  • every liquid transaction exposes partial info about the amount sent (namely, the fee paid) to everyone who cares to look
Lightning is more private by default, but not completely untraceable unless you take extra precautions, and maybe not even then. What makes lightning better "by default" is that you don't expose information about the sender/recipient/amount to everyone; you sometimes expose some of it to routing nodes along your path, but not to everyone who cares to look, and lightning also provides tools (like blinded paths and multipath payments) for obscuring that info from routing nodes too.
reply
Mhhh, ok, fair points. 👀
I think I don’t know enough about monero and lightning to have a well-educated opinion on this like you seem to have.
reply
You’re absolutely right that Bitcoin's privacy is flawed out of the box. Coinjoins, while useful, are not perfect—they are expensive, take time, and often leave detectable patterns on the blockchain that a skilled observer can analyze. As for Lightning, while it improves privacy for routing transactions, the receiving node can often still leak key information.
Why Monero? Monero was built with privacy as a core feature, not as an afterthought. Every transaction is private by default, combining tools like stealth addresses, ring signatures, and RingCT (Ring Confidential Transactions) to obscure sender, receiver, and amount. This means no additional cost, effort, or technical know-how is needed to ensure anonymity.
Regarding eCash (such as systems like Cashu), you’re correct that it can offer strong privacy once tokens leave the mint since transactions are not recorded on a public ledger. However, it has its limitations. Unlike Monero, it typically relies on centralized mints, which introduces trust and censorship risks. If a mint shuts down or is compromised, users lose their ability to transact or redeem their eCash. Dark markets, therefore, are unlikely to adopt eCash widely without decentralized solutions.
Why dark markets gravitate to Monero: It works. Full stop. XMR provides default privacy with a decentralized network and robust cryptographic assurances, without relying on third parties like mints. That’s why it’s not just used in theory—it’s actively the de facto currency for anonymous online commerce.
While eCash shows promise as an alternative for small-scale private payments, Monero’s trustless, proven privacy solution makes it unmatched for anyone serious about financial anonymity.
reply
When it comes to privacy, using the herd as camouflaged obscurity depends on the size of the "anonymity set", the communication channels, and access points used. Private money, whether LN, XMR, and eCash can be made ineffective IF not used with disciplined OpSec. Using a KYC'd phone, a KYC'd internet provider, and communicating over unencrypted channels will eliminate the anonymity of your transactions. The 1st thing to understand is that Anonymity means not knowing who you are and Privacy means knowing what you are doing, where you are, and who you are interacting with. Each of these variables must be managed for proper OpSec, especially when using DNMs.
Also, liquidity and provenance matter. As in, how big of a marketplace exists for moving into and out of these currencies. Almost ALL digital currency liquidity exists between fiat & BTC, with very few options for moving fiat into and out of XMR in cash. These on/off ramps cannot handle the volume of flow that big money requires and will take time to be built for both LN and eCash. But, public entities that control by far the vast majority of the world's wealth cannot and will never use private-by-default currencies. We must in a "sly roundabout way" bring privacy for ourselves, our families, and our businesses in through the back door. This is what LN and eCash are enabling, for those willing and able to put forth the effort to learn and to act with discipline.
Once eCash mints begin popping up with every employer/employee relationship, as the already have semi-trusted ongoing financial relationships, THEN "mult-nut" payments and eCash herd obscurity and liquidity will arrive. The size of both the herd and those joining/leaving it must grow over time before they'll become effective forms of financial camouflage.
Ecash is a proven protocol, but integrations with LN, Nostr, and businesses will take time to spread enough to grow both the on-off ramps and the anonymity set.
reply
What about the silent payments?
reply
what happens when a monero holder/ DN recipient wants to cash out etc tho ?
p2p for smaller amounts i guess, but if they were balling on drunk money, surely they are going to have some issues pop up, whether using lightning, ecash or monero etc
reply
meant to say balling on drug money, not drunk money
reply
the problem is the risk for the mint, as i see it, of running an ecash for its darknet store. yes, the customers' funds would be very difficult to track what purchases they made, but the mint still needs to serve as the clearing house from their ecash to lightning...so that would be very risky.
reply
a darknet market can integrate ecash without telling an ecash mint what it's doing, without even *communicating* with an ecash mint
by design, mints don't know who their users are
so the mint would never know a darknet market was one of its users
reply
this is true, if a mint became reputable and reliable on its own, there is no need for a store to be a mint, and then there would be no distinction between the store and the customer.
reply
it's one that Monero people always cite.
Monero is more of a cult at this point.
BTC has coinjoins and other tools, but they comes at a cost and do not always assure full privacy.
LN has good enough privacy, Liquid-BTC as well. You can always clean the sats further by using bunch of LN wallets and/or swaps. I find coinjoins to be a little too expensive, even when fees are 2-3 sats/vB.
You won't find anything good on darknets anyways. It's mostly drugs. Don't do drugs.
reply
The question was about ecash and its privacy features.
I don't know much about darknets because I believe as you said it's mostly for drugs and other stuff that I'm not into. But these edge cases do bring some important questions about privacy characteristics that money should have. There is no real freedom without privacy and a good form of money should allow individuals to transact without revealing what they do.
I don't do drugs but I am ready to defend your right to get high if you want to, it's your life it's your choice. Can ecash accomplish that?
reply
There is no real freedom without privacy and a good form of money should allow individuals to transact without revealing what they do.
If we didn't have coinjoins, swaps, LN, liquid-btc, eCash, then Monero might be useful. As things stand now, I see no point in using Monero.
Bitcoin is a superior form of money, and LN already provides good privacy for all people, except perhaps the darknet drug junkies who have their brains fried.
reply
I see no point in using Monero.
it's cheap and easy to use privately and you don't need to run a node to receive payments
except perhaps the darknet drug junkies who have their brains fried.
so you're saying it does not provide good privacy for the people who need it the most and that privacy on lightning depends on the government not caring enough about finding you which can change which should mean it does not have good privacy
reply
Your point against Monero is that they are cult, are you serious?
reply
Not so much a cult, just ultimately a shitcoin that offers no technical benefits over Liquid.
Monero may be "good" as a transactional coin, but one should never hold it for any length of time. In that sense its more like an eCash in practice.
Meanwhile, since LBTC (Liquid BTC) is in fact backed by real BTC (BTC is put into a verifiable multisig and equivalent amount of LBTC is minted), it makes it more suitable for holding for more than just immediate term use.
I'm not recommending anyone use Liquid-BTC as long-term storage, but certainly its fine for holding for medium term use of a few months or whatever.
Since LBTC can be utilized to send Lightning payments it offers all the technical benefits of LN with the "confidential transactions" of Monero and the security/debasement protection of BTC.
Monero is an idea which was cool in 2016 or whatever, but it no longer severs a purpose.
reply
Matthew Kratter calls monero it 'hot potato' money, which i think is quite accurate
reply
Matthew Kratter is a maxi hot potato
reply
Precisely. Its "Confidential USD"
reply
Monero and Liquid BTC serve different purposes, and dismissing Monero ignores its unique value:
  1. Privacy: Monero offers default privacy with ring signatures, stealth addresses, and RingCT, ensuring full anonymity. Liquid BTC’s Confidential Transactions only hide amounts, not identities or links.
  2. Decentralization: Monero is trustless, while Liquid relies on a federation to maintain the peg, making it less censorship-resistant and more centralized.
  3. Store of Value: Monero’s capped supply and growing adoption as a private transactional currency support its long-term value. The claim it’s unsuitable for holding is speculative.
  4. Lightning Comparison: Monero’s low fees make second-layer solutions unnecessary for small transactions, avoiding Lightning’s complexity and custodial risks.
  5. Adoption: Monero is a proven tool for private, uncensored transactions in real-world use cases, offering a level of privacy and decentralization unmatched by Liquid or BTC.
Monero remains indispensable for those needing true financial sovereignty, privacy, and trustless operation.
reply
Store of Value: Monero’s capped supply
It's not capped lmao
reply
🤣🤣🤣
reply
Exactly 😆
reply
Monero is effectively capped with ‘tail emission’ of 0.6 XMR per block after the main supply is mined, the inflation rate decreases perpetually approaching zero over time, making Monero disinflationary.
reply
Bitcoin is absolute scarcity, Monero is not. HFSP
reply
Liquid BTC’s Confidential Transactions only hide amounts, not identities or links.
Using Liquid cross chain with LN (onion routing) solves those issues.
Decentralization: Monero is trustless, while Liquid relies on a federation to maintain the peg, making it less censorship-resistant and more centralized.
True
Store of Value: Monero’s capped supply ....The claim it’s unsuitable for holding is speculative.
Prove it. There is no way you can have both "hidden amounts" and "provable supply cap". The entire reason Liquid opted not to hide amounts was to avoid this issue.
Monero’s low fees make second-layer solutions unnecessary for small transactions, avoiding Lightning’s complexity and custodial risks.
Basically true.
Adoption: Monero is a proven tool for private, uncensored transactions in real-world use cases, offering a level of privacy and decentralization unmatched by Liquid or BTC.
Outside of silk-road / dark-web, monereo has no real use. In fact, a legitimate website or company would be barred from accepting monero because of the regulatory risk involved. This basically paints a huge target on all monero users and isolates you for further scrutiny.
The entire benefit of Liquid+LN combo is that you have gained the confidential aspects but are still using the most widely accepted form of crypto....
reply
Using Liquid cross chain with LN (onion routing) solves those issues.
Not really. LN changes nothing about traceability on Liquid itself. And at that point you might as well get rid of Liquid and just use Lightning.
There is no way you can have both "hidden amounts" and "provable supply cap". The entire reason Liquid opted not to hide amounts was to avoid this issue.
Liquid does hide amounts
In fact, a legitimate website or company would be barred from accepting monero because of the regulatory risk involved
There's plenty of legitimate white market businesses that accept Monero like Coincards, Mullvad, Silent Link, etc. Too many to even list: https://monerica.com/
The entire benefit of Liquid+LN combo is that you have gained the confidential aspects but are still using the most widely accepted form of crypto
How many businesses accept Liquid? Nearly zero. And lightning is nowhere near as accepted as on-chain Bitcoin.
reply
Liquid + LN may suit niche scenarios, but Monero provides unmatched privacy, decentralization, and simplicity for real-world, censorship-resistant use.
Liquid + LN adds complexity but doesn’t achieve Monero’s default privacy. LN requires on-chain BTC to open channels, leaving a trail. Monero's privacy is built-in no need for additional layers or tools to obscure sender, receiver, and amounts.
Adoption and use cases of Monero highlight its true value: a permissionless and uncensorable currency. It's not just for the dark web but it's widely used by individuals and organizations needing financial privacy. Liquid, tied to BTC, still relies on a trusted federation, making it less ideal in censorship-prone environments.
Associating Monero solely with illicit use is outdated. Privacy is a right, not a crime. Legitimate use cases (e.g., donations, salary payments) grow as awareness of financial surveillance increases. Monero users aren’t 'isolated'; they’re safeguarded from mass surveillance.
reply
Why do you sound ChatGPT'ed?
reply
That's your best argument?
Liquid doesn't hide sender or reciever, so Monero actually does offer substantially better technical benefits over it
The market disagrees. No darknet markets use Liquid or LN so it actually does serve a purpose.
reply
Liquid doesn't hide sender or reciver
Last part about darknet markets not having LN is pure cope
reply
ok boomer
reply
Monero is more of a cult at this point.
hmm... does seem that way sometimes.
on the other hand, Bitcoin is too ;) (or at least it was for a long time. we're a bit more mainstream now)
reply