Skip to content

Privacy model

Each control, its scope, and the boundary none of them cross.

Solana is a public ledger. Balances, transfers and the links between addresses are readable by anyone, permanently. No interface changes that. What an interface can control is what it displays and which requests it makes.

The controls

ControlScopeEffect
Hide balancesThis deviceAmounts and values render as placeholders
Privacy screenThis deviceMasks automatically when the tab loses focus
Quick hideThis deviceShift + H toggles masking from anywhere
Hide small balancesThis deviceDust leaves the list, still counts in the total
Mask addressThis deviceHeader and menus show a truncated address
Hide activityRequestsTransaction history is neither requested nor shown
Market dataRequestsPrice and token lookups stop entirely
Custom endpointNetwork pathChain reads bypass Invisio's relay
Idle disconnectSessionThe wallet disconnects after inactivity
Forget on disconnectSessionCached data and the remembered wallet are dropped

Where preferences live

In your browser's local storage. They are not sent to Invisio, do not follow you to another device, and are cleared when you clear site data.

Not available

Hiding an amount from the network — rather than from the screen — needs confidential transfers. They exist as a Token-2022 extension, but none of the assets Invisio supports enable it, and the proof system it depends on is not something a wallet can drive today. Invisio ships no switch for it, because a switch that implies protection it cannot deliver is worse than its absence.