Zcash activated the Ironwood network upgrade on July 28, 2026, replacing the vulnerable Orchard shielded pool with a new protocol structure designed to restore confidence in ZEC’s circulating supply. The activation makes verifiable monetary integrity the defining objective of the upgrade.
The change addresses the Orchard “infinity” bug, a zero-knowledge circuit flaw that could have theoretically allowed undetectable ZEC creation inside the shielded pool. Ironwood responds by isolating the legacy pool and creating a controlled migration path for private balances without carrying forward unverifiable supply risk.
Turnstile Rule Creates a Public Accounting Boundary
Ironwood introduces a replacement shielded pool that starts from a clean cryptographic state. The upgrade supersedes new Orchard activity and gives Zcash a fresh environment for shielded transactions under corrected protocol rules.
The central mechanism is the turnstile rule. It enforces a strict accounting invariant: no more ZEC can leave the legacy Orchard pool than was verifiably deposited into it, creating a public supply checkpoint without revealing private transaction details.
That boundary is critical because it quarantines any hypothetical counterfeit value inside Orchard. Even if undetected value creation had occurred, the turnstile would prevent excess value from migrating into the new Ironwood pool or other ledger segments, preserving the enforceability of Zcash’s 21 million ZEC supply cap.
The upgrade does not answer every historical question. Whether the Orchard vulnerability was ever exploited remains a separate factual issue, but Ironwood removes the structural uncertainty that previously weakened trustless supply verification.
For exchanges and custodians, that distinction matters. The protocol now provides a clearer basis for documenting supply integrity, custody reconciliation and counterparty assurances, turning Ironwood’s accounting rule into an operational control point.
Lean Proof Strengthens the Assurance Model
Ironwood’s guarantees were backed by formal verification work produced with Project Tachyon. The Zcash team supplied a machine-checked Lean formalization covering the proof system, circuit rules and ledger accounting, making mathematical verification part of the upgrade’s security case.
The Lean proof comprised more than 2,700 theorems that collectively support balance integrity for the new shielded pool under stated cryptographic assumptions. Because the proof is machine-checked, successful compilation provides stronger assurance than manual review alone.
That does not eliminate the need for independent audits, monitoring or operational controls. It does, however, materially improve the foundation for institutional risk reviews because the protocol’s supply logic can now be evaluated through formally verified invariants.
The post-Ironwood checklist changes. Instead of treating the shielded pool as an opaque supply-risk zone, firms can incorporate the turnstile, migration records and verified pool rules into regular custody reporting and governance documentation.
For node operators and infrastructure providers, the upgrade also requires software readiness. Ironwood depends on NU6.3-capable implementations, so reliable service continuity now rests on upgraded nodes, monitoring and correct handling of migration flows.
Ironwood materially reduces a specific counterfeiting-risk class, while custody controls, wallet security and exchange procedures remain separate operational responsibilities outside the protocol fix.
The upgrade’s success will now be judged by migration execution, audit acceptance and market confidence in the new shielded pool. If those pieces hold, Ironwood will stand as a rare case where privacy infrastructure uses public accounting and formal proof to restore monetary assurance.
