xmr.club
EN 中文 ES RU
★ FRONT-PAGECOllie Swap— Anonymous Tor-only swap for BTC, BCH, DASH, LTC, XMR — no accounts, own liquidity, PGP-verified operator identity.
/tools · verified 2026-08-31

StealthLedger

C

Client-side-encrypted, zero-knowledge crypto + cash portfolio tracker — no account, no email, no wallet addresses. Manual entry only (nothing to deanonymize), passkey login, and a verifiable frontend (SRI + integrity manifest + out-of-band pin). Tracks XMR among 10,000+ assets.

At a glance

Grade
C ()
KYC posture
NO-KYC
Last verified
2026-08-31
Operating since
2026-08 · 0y — Domain registered 2026-08-24 (NameSilo). Free public beta, solo dev (X: @StealthLedger_). Frontend verifiability (SRI + integrity manifest + verify.html + releases.txt + out-of-band X pin) shipped + verified live 2026-08-31.
C Why grade C?

Acceptable with reservations. Posture intact but evidence is older, lighter, or the provider sits on a known weakness (custody risk, history of customer-fund freezes resolved, etc.).

Full rubric + 7-step verification walkthrough at /methodology.

Review

A private portfolio tracker that never sees your holdings. StealthLedger seals your positions with AES-256-GCM in your browser (scrypt-derived key) before anything leaves the device — the server stores an opaque blob it has no key to open. There is no account and no email: you get a passkey and a random key, not a signup form. Crucially it is manual-entry — no wallet addresses, no xpubs, no Monero view keys — so there is no honeypot of data that could deanonymize you. It tracks XMR alongside cash and 10,000+ assets.

The frontend is verifiable, not just trusted. For a hosted "zero-knowledge" web app the hard question is: what stops the server shipping you malicious JavaScript? StealthLedger answers it with a doxx-free chain we checked ourselves — SRI on every subresource, a signed integrity manifest (`/integrity-manifest.json`, SHA-384 per asset + self-hash), a live in-browser verify page (`/verify.html`), a same-domain release pin (`/releases.txt`), and — the part that actually closes the gap — an out-of-band pin on X (separate infrastructure). A malicious build now has to defeat SRI, rewrite the manifest and releases file consistently, *and* forge the value on an X account it does not control. We confirmed the SRI, the matching manifest/releases self-hash, and the verify page are all live.

Why C. The design and verifiability are genuinely strong; the grade reflects tenure and scope. The domain is days old and the service is in free public beta; it is a general multi-asset tracker, so Monero is one line item rather than the point; and it remains a hosted web app whose strength ultimately rests on a single out-of-band anchor (one X account — a second independent pin such as a signed git tag or Nostr note would harden it). It climbs on tenure, a beta-to-GA exit, and a second anchor. A rare tracker that earns privacy trust by construction, not by promise.

Links

Sourced from operator pages — verify identity via more than one channel before trusting time-sensitive instructions.

Audit trail — receipts for the editorial claim

  • UPSTREAM Up · HTTP 200 · 578ms · checked 26m ago
  • ONION No .onion mirror listed
  • MANUAL Last manual verification 2026-08-31 (<7d)

Reviews — moderated · rules

No community reviews yet. Be the first below.

Add a review

Honest, brand-neutral feedback welcome. A curator approves before it appears here. No JS required.

Required: review body. Honest, descriptive reviews get approved within a day. Marketing copy, slurs, or invective get rejected. Per-day cap of 5 submissions per IP.