⚠  RISKY Service is defunct after the April 2024 DOJ seizure; the original domain has been hijacked into a Bitcoin-phishing site since March 2026 — using it now is hazardous.
RISKY C L1 · anonymous
S
Samourai Wallet

Defunct Bitcoin privacy wallet; domain now phishing.

BTC

Samourai Wallet ran nine years of Bitcoin CoinJoins; the FBI took the coordinator, then squatters took the domain.

A wallet that insisted privacy wasn't optional. Two convictions and a hijacked domain later, it makes the same case differently.

Jurisdiction no HQ
Operating since 2015
Category Wallets
Rubric v2.7

How it works

Samourai shipped as an Android-first Bitcoin wallet. The app was non-custodial: key material lived on the device, the seed never left it. Above that base it stacked a set of privacy primitives that distinguished it from every mainstream wallet of its era. Whirlpool was a fixed-denomination Chaumian CoinJoin with five-participant pools and surge cycles. Ricochet forced an outgoing payment through additional hops before reaching the recipient. Stonewall and Stonewall x2 produced decoy-output transactions that imitated CoinJoin patterns from a single wallet. PayNyms were BIP47 reusable payment codes that generated fresh receive addresses per sender. Power users could pair the app with a self-hosted Dojo, a personal full-node backend that removed any need to query Samourai's own infrastructure.

KYC & privacy

There was no signup. No email, no phone, no account. The wallet generated a seed locally; the user wrote it down. Whirlpool, however, depended on a coordinator server operated by the Samourai team, and that server is what the indictment turned on: prosecutors alleged Whirlpool was an unlicensed money transmitter and that its operators knowingly facilitated laundering of dark-market proceeds. Samourai's stated policy was zero logs at the wallet layer and minimal logs at the coordinator. The architecture meant operators could not see balances or seeds, but they could see mix participation patterns from coordinator metadata — a distinction the DOJ treated as immaterial.

Strengths and limits

For nine years Samourai was, in privacy terms, what it claimed to be: the most aggressive consumer-facing CoinJoin product on Bitcoin. The codebase is open source under the Unlicense, hosted on GitHub at Samourai-Wallet, and survives there for anyone who wants to audit or fork it. The limits ended the project. Whirlpool's coordinator was a single legal point of failure, and once Iceland-hosted servers and the primary domain were seized in April 2024, in-flight mixes left UTXOs that needed third-party tools — a forked Ashigaru build, Sparrow's CoinJoin upgrade — to be recovered. Founders Keonne Rodriguez and William Lonergan Hill pleaded guilty in 2025; in November of that year a New York court sentenced Rodriguez to five years and Hill to four. In March 2026 the seized domain reappeared under unknown ownership running a near-pixel-perfect phishing clone designed to harvest seed phrases — a hazard that now outranks every functional concern about the original product.

Verdict

Samourai itself never lost user funds and never collected user identities; the architecture worked as advertised until the coordinator was switched off by the state. What survives is an open repo, a cautionary tale about coordinator-anchored privacy, and a domain that is actively dangerous in 2026. Anyone still typing samouraiwallet.com into a browser is being targeted. Grade: C (6.8/10). Trust: RISKY.

verdict.samourai.diff +5 pros −4 cons
what works
+ 01 Open source under the Unlicense; the full code remains on github.com/Samourai-Wallet for forks
+ 02 Non-custodial; seed lived on the device, never on a Samourai server
+ 03 No signup, no email, no phone — wallet creation was offline and identity-free
+ 04 Whirlpool, Ricochet, Stonewall and PayNyms gave Bitcoin its most aggressive consumer privacy stack
+ 05 Dojo backend let users self-host the full node and skip Samourai's infrastructure entirely
what to know
01 Service is defunct: founders convicted in 2025, servers and primary domain seized in April 2024
02 Whirlpool's coordinator was a single legal point of failure; its seizure stranded in-mix UTXOs
03 The original samouraiwallet.com is now a phishing clone targeting seed phrases (March 2026 on)
04 No active operator to ship updates, security fixes, or warnings to existing users

Samourai itself never lost user funds and never collected user identities; the architecture worked as advertised until the coordinator was seized. What survives is an open repo, a cautionary tale about coordinator-anchored privacy, and a domain that is actively dangerous in 2026. Grade: C (6.8/10). Trust: RISKY.