Home » Services » Zero Knowledge
Zero Knowledge

Privacy-First Apps

We build applications that protect user data at the mathematical level, not just through policy promises or GDPR checkboxes.

Cancel any week. Last week refunded if we didn't blow you away. No hours tracked.

  • 75+ products shipped
  • 10+ years experience
  • No-Bullshit Guarantee
What is Zero Knowledge? A cryptographic technique that lets you prove you know something (a password, an identity, a transaction) without revealing the underlying information. Privacy without compromise.
// 01

What We Build

ZK-Powered Applications

Applications where user data is verified without ever being exposed: identity, credentials, financial data.

Privacy-Preserving Protocols

On-chain and off-chain protocols where participants can interact without revealing sensitive state.

Privacy Architecture Consulting

Not every project needs ZK proofs. We help you assess when it's the right tool and design accordingly.

// 02

What You Get

Data stays private, always
Beyond GDPR compliance
Usable, not just secure
User-controlled data
Verifiable without exposure
Reduced liability surface

HOW WE DEVELOP SOFTWARE

How we develop Software

Five phases. Fixed prices. No lock-in.

Phase 01

Discovery Phase

Fixed price at 3.500€ Buy now
  • Requirements Engineering
  • Software Architecture
  • Milestone Plan
  • Technical Flows and Sequence Diagrams
  • Launch Plan and Milestone Plan
Phase 02

First Iteration

Fixed price between 15–20k€ (MAX) Book Discovery Phase
  • Building your real MAP (Minimal Awesome Product)
  • Cost-effective approach. Strip requirements to 15–20k max
  • Test directly on the market as cheaply as possible with real customers
  • Discovery Phase cost is deducted as a rebate
Phase 03

Subsequent Iterations

Fixed price packages / Agile Fixed Price What is Agile Fixed Pricing?
  • Building and extending product based on real customer/user demand
  • Ideally partially funded by real sales
  • Data-driven development decisions (watch user behavior over user demands)
  • Continuous improvement cycle
Phase 04

Maintenance

Fixed weekly retainer 750€ / week, cancel anytime Apply now
  • Security patches (nobody likes data breaches or losing money)
  • Fixing bugs (can be a major reason of customer churn)
  • Technical support (most companies have an abysmal customer support)
  • Performance, cost & CI/CD optimization
Phase 05

Further Dev / Hand-Over

Your product, your team. We'll never lock you in.
  • We'll never make you dependent on our team
  • Smooth transition to your internal team
  • Knowledge transfer and documentation
  • Continued support as needed
Fixed price at 3.500€ Buy now
  • Requirements Engineering
  • Software Architecture
  • Milestone Plan
  • Technical Flows and Sequence Diagrams
  • Launch Plan and Milestone Plan
Fixed price between 15–20k€ (MAX) Book Discovery Phase
  • Building your real MAP (Minimal Awesome Product)
  • Cost-effective approach. Strip requirements to 15–20k max
  • Test directly on the market as cheaply as possible with real customers
  • Discovery Phase cost is deducted as a rebate
Fixed price packages / Agile Fixed Price What is Agile Fixed Pricing?
  • Building and extending product based on real customer/user demand
  • Ideally partially funded by real sales
  • Data-driven development decisions (watch user behavior over user demands)
  • Continuous improvement cycle
Fixed weekly retainer 750€ / week, cancel anytime Apply now
  • Security patches (nobody likes data breaches or losing money)
  • Fixing bugs (can be a major reason of customer churn)
  • Technical support (most companies have an abysmal customer support)
  • Performance, cost & CI/CD optimization
Your product, your team. We'll never lock you in.
  • We'll never make you dependent on our team
  • Smooth transition to your internal team
  • Knowledge transfer and documentation
  • Continued support as needed

FAQs

When ZK is right, and when it isn't

End any week, with one message. No notice period, no exit interview, no fine print. We invoice weekly, so the most you’re ever committed to is the current week.
It’s in your contract: tell us, and we refund that week. No questions, no invoices to dispute, no calls to escalate. The only rule: refunds apply to the most recent week.
Because hours are the wrong metric. If we’re optimizing for hours billed, we’re not optimizing for your outcome. The deal is simpler: every week, we earn the next one. If we don’t, you don’t pay. We’re free to spend zero hours or sixty. What matters is whether you’re blown away.
We work with operators, not lottery winners. If a request would require breaking physics, the law, or a third party’s systems, we say so, and if we can’t align, we walk. The guarantee is mutual: you can fire us any week; we can also fire ourselves.
When the privacy guarantee or the off-chain compute verification is genuinely load-bearing for the product. Voting systems, private identity, scalable rollups, and certain compliance flows are clear wins. For most ‘add ZK to it’ pitches, the honest answer is ‘a database with auth is sufficient and 100× cheaper.’ We’ll say so.
We size the proving infrastructure as part of the architecture phase, not after launch. Off-chain proving with on-chain verification (the standard pattern) typically runs in milliseconds-to-seconds for well-designed circuits. We benchmark on real hardware before committing, and we’ll tell you when the proving cost makes the use case uneconomic.
Often yes. ZK doesn’t have to be the whole app. It can be a verifier contract or a single proof-generation flow inside a conventional stack. We’ve integrated ZK identity verification, private balance checks, and proof-of-membership into otherwise normal web apps. The hard part is usually UX, not cryptography.
Groth16 for small, fixed circuits with the lowest verification gas (good for Ethereum mainnet). PLONK or Halo2 for general-purpose circuits where you want a universal trusted setup, or none at all. STARKs (Cairo, RISC Zero, Boojum) when you want post-quantum security or a transparent setup. Noir or Circom for circuit authoring depending on team familiarity. We pick by what verifies cheapest on your target chain and what your developers can audit, not by what’s loudest on Twitter.
A privacy-flow addition to an existing dApp (one circuit + verifier contract): €25-50k. A standalone ZK identity or membership product: €50-120k. A ZK rollup or app-specific chain: €200k+ and 6-12 months, with audit being a non-negligible slice. Audit costs for ZK circuits run higher than for plain Solidity (€30-80k for non-trivial circuits) because the surface area is mathematical, not just code. We quote the audit budget alongside the build budget so it doesn’t surprise you later.

Get to know us

Long-term relationships over quick wins.

Blogs
No BS Around Tech Podcast
Image Gallery