With ZCash I'm willing to trust the trusted setup (even if it was imperfect); the issue is that people don't actually use shielded addresses/privacy protecting transactions much.
With ZCash I'm willing to trust the trusted setup (even if it was imperfect); the issue is that people don't actually use shielded addresses/privacy protecting transactions much.
I don't think blinding factors are as much of an issue.
Zcash setup doesn't matter for privacy. The larger issue is as you said, adoption of private transactions.
[0]https://github.com/mimblewimble/docs/wiki/Grin-Privacy-Prime...
https://www.grin-forum.org/t/benedikt-bunzs-utxo-commitments...
Standardizing values makes no sense since amounts are already invisible.
How many self to self tx does bob need to do to hide from Alice and carol?
The more I learn about MW the less suitable it seems for my goals.
If you imagine the ledger like a deck of cards, there is probably a point where all txo's are shuffled (and we can likely make a conjecture that after N shuffles, the position of any txo is unknown, it's just hard to gauge how many shuffles we need to do for real privacy guarantees. If you want 6 sigma privacy, you might need to wait a very long time).
The mailing list message https://lists.launchpad.net/mimblewimble/msg00091.html explains how any possible multi-party transaction can be done safely without exchanging blinding factors.
Out of band blinding factor transfer is interesting, also relay/mix nets are interesting. I think it’s all a super cool area that’s worth studying closely.