# StealthLedger

Category: tools · Charts & Portfolios
Grade: C
KYC: NO-KYC
Highlights: XMR, ZERO-KNOWLEDGE, NO-ACCOUNT, NO-EMAIL, VERIFIABLE-BUILD
Features: client_side_encryption, zero_knowledge, no_account, verifiable_frontend, xmr
Web: https://stealthledger.net/
Last verified: 2026-08-31
Operating since: 2026-08 (0y) — Domain registered 2026-08-24 (NameSilo). Free public beta, solo dev (X: @StealthLedger_). Frontend verifiability (SRI + integrity manifest + verify.html + releases.txt + out-of-band X pin) shipped + verified live 2026-08-31.

> Client-side-encrypted, zero-knowledge crypto + cash portfolio tracker — no account, no email, no wallet addresses. Manual entry only (nothing to deanonymize), passkey login, and a verifiable frontend (SRI + integrity manifest + out-of-band pin). Tracks XMR among 10,000+ assets.

## Review

**A private portfolio tracker that never sees your holdings.** StealthLedger seals your positions with **AES-256-GCM in your browser** (scrypt-derived key) before anything leaves the device — the server stores an opaque blob it has no key to open. There is **no account and no email**: you get a passkey and a random key, not a signup form. Crucially it is **manual-entry** — no wallet addresses, no xpubs, no Monero view keys — so there is no honeypot of data that could deanonymize you. It tracks XMR alongside cash and 10,000+ assets.

**The frontend is verifiable, not just trusted.** For a hosted "zero-knowledge" web app the hard question is: what stops the server shipping you malicious JavaScript? StealthLedger answers it with a doxx-free chain we checked ourselves — **SRI** on every subresource, a signed **integrity manifest** (`/integrity-manifest.json`, SHA-384 per asset + self-hash), a live in-browser **verify page** (`/verify.html`), a same-domain **release pin** (`/releases.txt`), and — the part that actually closes the gap — an **out-of-band pin on X** (separate infrastructure). A malicious build now has to defeat SRI, rewrite the manifest and releases file consistently, *and* forge the value on an X account it does not control. We confirmed the SRI, the matching manifest/releases self-hash, and the verify page are all live.

**Why C.** The design and verifiability are genuinely strong; the grade reflects tenure and scope. The domain is days old and the service is in free public beta; it is a **general multi-asset tracker**, so Monero is one line item rather than the point; and it remains a hosted web app whose strength ultimately rests on a **single out-of-band anchor** (one X account — a second independent pin such as a signed git tag or Nostr note would harden it). It climbs on tenure, a beta-to-GA exit, and a second anchor. A rare tracker that earns privacy trust by construction, not by promise.

Source: https://xmr.club/tools/stealthledger