We made a way to launch "tokens" on Zcash.
Live now.
The quotes are doing work. Zcash can't hold assets yet — ZIP 226 and 227 are still drafts, and the next upgrade doesn't even carry the transaction format they need. So we do it another way.
Zcash has always accepted inscriptions. No new consensus rules, no upgrade needed — an inscription is just a transparent transaction carrying data. ~113,000 already sit on mainnet. That's the opening. The asset is an inscription, because it's the only form Zcash takes today. How it works: Burn the token on Solana in one transaction.
A stamp appears on Zcash mainnet, cut with the exact amount you destroyed, delivered to your address. No bridge. No escrow. No multisig holding your coins. It isn't hardcoded to one coin. The whole protocol is parameterized by the Solana mint — point it at any token and it works. Each stamp maps to exactly one burn, claimable once. A balance can't say this destruction happened, this amount, this person. Only a unique record can. When shielded assets ship, every stamp converts to the amount cut into it.
The rule is the product. A stamp counts only if it cites a real burn nobody has claimed, delivered to the address that burner chose. Minting is permissionless — the minter key isn't trusted, so we attacked it. Forged a stamp on mainnet with our own minter key. 10x the amount, citing a burn that never happened.
Zcash accepted it — consensus has no opinion on our rules — the ledger refused it. Supply still equals burns exactly.
Real, on Zcash mainnet: stamp b2cbded5c37c2cca8918a077a73e2ca349005efba046cee0866b34dd879c5acb
forgery d54660626ac2464cdaac7009e5b0b93f8b705e6236b24455edde8a34faffc0b7
Rebuild the set from public data on both chains. You'll get the same answer.