Deterministic
For one U and destination token program, pWrap derives one W and one escrow.
pWrap derives a quantity-backed Token‑2022 representation W for an existing Solana mint U. U stays unchanged. Capabilities attach to W.
U · USDCExisting mint
W · USDCToken‑2022 representationThe selected asset carries through every protocol stage.
Protocol properties
For one U and destination token program, pWrap derives one W and one escrow.
The deterministic escrow must hold at least as much base U as total W supply.
Unwrap burns W and debits U from escrow when current U rules and account state permit delivery.
pWrap does not modify U’s mint or authorities. W has independent on-chain state.
The protocol sequence
pWrap leaves U unchanged. U plus the destination token program derive the relationship identity.
U · USDCU anchors the deterministic relationship.
Wrap moves U into escrow and mints W equal to the net base amount credited. In one atomic transaction, Unwrap burns X W and debits X U from escrow; current U rules determine recipient delivery.
U · USDCExisting mint
W · USDCToken‑2022 representationPublic entry and exit.
W owns independent on-chain state. Token‑2022 capabilities attach there—not to U. Applications expose supported W capabilities.
W · USDCToken‑2022 state lives on W.
From primitive to product
The protocol creates a quantity-backed W. Token‑2022 supplies capabilities on W. Applications turn those capabilities into user-facing flows.
pWrap derives W and escrow. CreateMint, Wrap, and Unwrap are public pWrap instructions.
Confidential Transfer is the first capability on the default W. Confidential deposit, apply, transfer, and withdraw occur separately through Token‑2022 on W.
Wallets and payment products can turn those capabilities into useful flows. These are product experiences, not pWrap instructions or guarantees.
The boundary stays explicit. Integrations can verify the U/W relationship, escrow, W supply, and current authority state on-chain. Each product must separately review the assets and extensions it chooses to support.
Live deployment evidence
The upgradeable pWrap program is executable at the same address on Solana Mainnet and Devnet. Mainnet is the production program deployment; Devnet remains available for integration testing. The clusters share an address, not state or authority.
Production program deployment
Test-cluster program deployment
Deployment proves executable code at this address—not support for an asset. No Mainnet asset relationship is currently operator-authorized. Permissionless third-party creation does not imply product support.