Engine library tests
Latest settlement acceptance run, alongside three compile-fail checks. Test counts are not a security audit.
Engineering roadmap / BTC ↔ XMZ
A Bitcoin–Monzero exchange inside the Monzero GUI. Built in the open, verified in stages, with recovery designed into the trading journey.
Engineering snapshot ·
Milestone-based delivery. No committed live launch date.
01 / Evidence, not promises
These are development checks at this snapshot—not an audit, a security score or a percentage of project completion.
Latest settlement acceptance run, alongside three compile-fail checks. Test counts are not a security audit.
Native wallet coordination, recovery controls and GUI/backend boundaries.
Quote review, state visibility and the read-only recovery action.
Real transactions on isolated test chains, with restart reconciliation.
Full GUI build · Isolated startup · Signed recovery destinations & fee limits · Swap-lock input binding · Repeatable acceptance runner
Important boundary: the new isolated exact-payment test delivers full principal and returns unused reserve. The broader negotiated two-party swap fixture still pays partial XMZ proceeds. Complete full-proceeds swaps and whole-application recovery remain unfinished. C++ and QML counts above are from the earlier roadmap snapshot, not a new run today.
Engineering update / 19 September 2026
Development progress on disposable test chains only. No real-money activation or new downloadable wallet release is announced by this update.
Exact quoted XMZ reaches its destination, with network fees accounted for separately and unused reserve returned. A deliberately lost broadcast reply is reconciled without a second payment.
Saved transaction inputs are checked against the open wallet before submission. Wrong-wallet relay is rejected. Focused tests passed with GCC and Clang, and the wallet RPC was rebuilt successfully.
Encrypted transaction metadata can be restored in a fresh worker. Wrong keys and altered records fail before broadcast. Production key storage, backup and recovery after the whole application closes remain outstanding.
Only an aggregate summary is published here. Raw development logs, local usernames, home-directory paths and private wallet data are not included.
A quote for 100 XMZ means exactly 100 XMZ received. The XMZ buyer funds a separate network-fee reserve and receives its unused balance. This policy is documented; its new signed terms and complete two-party execution are not yet implemented. Initial application trading fees remain zero, separate from network fees.
Next: implement signed reserve terms and durable recovery storage; prove complete two-party settlement and refunds; connect GUI approval to execution; validate public peers, pricing rules and release gates. Cancellation-fee responsibility, recovery unlocking and reserve funding for buyers without XMZ still need resolution.
02 / The delivery path
Workstreams can overlap, but dependencies cannot be skipped. Each milestone has an observable exit condition.
SETTLEMENT ENGINE
Integrate the tested exact-payment primitive into a complete negotiated exchange: agreed proceeds delivered, buyer-funded network fees accounted for, no unexplained funds left behind.
Full proceeds or the defined refund reach the correct wallet; every fee and remaining output has an explicit treatment.
Still needed: signed reserve terms, cancellation-fee policy and full two-party integration
DURABLE RECOVERY
Retain enough verified state to recover when the entire application stops—not only when one test process restarts.
A fresh application process resumes or safely reconciles interrupted swaps without duplicate funding or loss of recovery information.
Builds on: single-use claims and isolated recovery tests
MONZERO GUI
Connect the wallet interface to actual execution, with deliberate approval, understandable progress and a visible recovery path.
A tester can complete a full test-network swap in the GUI, including an interrupted-and-restarted scenario, without developer intervention.
Requires: full settlement + durable recovery
PUBLIC TRADING INFRASTRUCTURE
Move beyond controlled local counterparts to authenticated peers and discoverable offers on a public test network.
Separate testers can discover, agree and complete supported test-network trades, with failures and offline peers handled explicitly.
Requires: authenticated protocol + working execution workflow
PRICE POLICY & XMZ UTILITY
Apply agreed price limits and a clearly defined XMZ application-fee model to trades through the Monzero protocol.
Actual trade admission enforces the approved price policy and fee rules; users can distinguish application fees from native network fees.
Decision needed: pricing policy + fee model. Current signed quotes support zero application fee.
REVIEW & STAGED RELEASE
A passing test suite is evidence, not a launch switch. Real-money activation follows review, platform validation and explicit release approval.
Settlement, recovery, security and release requirements have supporting evidence. Warnings and public testing do not replace those requirements.
Requires: prior milestones + review findings addressed
03 / Planning horizon
Illustrative engineering effort, assuming experienced full-time development, prompt design decisions and no major protocol redesign. These are not scheduled completion dates.
Solid + hatched bars show the estimated effort range. Work can overlap; the ranges should not simply be added together. Independent review and release scheduling are separate.
A planning estimate for the end-to-end test-network journey, including restart recovery.
Subject to capacity, peer infrastructure, market-rule decisions and test findings. Not a mainnet launch promise.
04 / Clear expectations
The immediate milestone is a complete Bitcoin–Monzero trading path. Additional assets are future scope, not supported live markets implied by this page.
Limits apply to new trades through our protocol. They do not set prices on other exchanges, guarantee a buyer or establish a guaranteed XMZ value.
Public test-network participation can uncover failures. It does not replace independent review, and no paid bug-bounty programme is announced by this roadmap.
Open development. Honest milestones.
Explore the project, review the security guidance and follow future tester instructions. No deposit is required to read or follow this roadmap.