Find an offer you like, take it, and trade directly with another person. Or post your own offer and wait for someone to take it.
The bitcoin stays in multisig escrow while you settle the payment directly. Use whatever works for both of you — bank transfer, UPI, Pix, Zelle, M-Pesa, or cash in person.
No money passes through us. We don't hold your funds, and we can't move the bitcoin by ourselves.
Telegram handles the coordination. Multisig handles the escrow. You and the other person handle the payment.
The idea is pretty simple.
Someone posts an offer at a price they're willing to trade at. Someone else accepts it and wants to fill the order.
Before the trade starts, both sides put up a security bond in a new 2-of-3 multisig address. The seller deposits the bitcoin being sold, along with their bond. The buyer puts up their bond as well.
The buyer then pays the seller directly using whatever payment method was agreed on in the offer — bank transfer, UPI, Pix, Zelle, M-Pesa, SEPA, or even cash in person. Once the seller confirms that the payment has arrived, the bitcoin can be released from escrow.
The model is basically borrowed from Bisq. You have the same kind of multisig escrow, bonded incentives, and an arbitration fallback if the trade goes sideways.
The difference is that you don't need to install a desktop client, sync the Bitcoin blockchain, or create another account just to make a trade. The whole thing lives inside a bot in an app you already use.
The bot does hold one of the three escrow keys, but that's all it can do. One key isn't enough to spend the bitcoin on its own.
And you don't have to trust us blindly on that.
The escrow address is a regular 2-of-3 multisig script on the Bitcoin blockchain. Before sending anything, you can open the address in a block explorer and verify the setup yourself. You can see that there are three keys and that two are required to move the funds.
That's the whole point: the bot helps coordinate the trade, but it doesn't get custody of your money.
Follow that through and three things fall out of it:
Two of the three keys are needed to move the bitcoin, and we hold one of them.
That means, in theory, we could work with the person on the other side of your trade and use the two keys to take the coins. That is the trust assumption you are making when you use the service.
So why would you take that risk?
Three things make it a bad bet for us.
First, before you approve anything, the payout screen shows you exactly where every satoshi is going. The details are read from the actual Bitcoin transaction, not from our database.
Second, both sides have money locked up as a security bond. If we tried to rig a dispute and the other party went along with it, they would have to put their own bond at risk too.
Third, the payment methods where a transaction is easiest to reverse have lower trade limits. The more reversible the payment rail, the smaller the amount you can trade.
The system isn't based on you blindly trusting us. It's designed so that cheating is difficult to hide, expensive to cooperate on, and limited in how much can be taken in a single trade.
MakerPosts an offer: direction, currency, rail, size range, and a price either pinned to a number or tracking the index with a spread.
TakerAsks to fill it for a specific amount. This is a request, not an execution. The maker can accept, decline with a reason, or reply and decide later.
BothAgree to start. The price freezes at that moment and escrow addresses are derived. Nobody is put on a funding clock they did not choose.
BothFund the multisig. Seller sends the coins plus their bond, buyer sends their bond.
BuyerOnce deposits confirm, the seller's payment details are revealed. The buyer sends the fiat and marks it paid.
SellerConfirms the money arrived. The payout is built, the bot adds its signature, the seller adds theirs, and it broadcasts.
If it goes wrong at any point, either side opens a dispute. Coins stay locked while an arbitrator reads the timeline, the chat and the chain, then signs a settlement with whichever party the ruling favours.
| Item | Rate | Notes |
|---|---|---|
| Maker commission | 0.10% | You posted the offer. Posting is cheaper on purpose. |
| Taker commission | 0.70% | You filled someone else's offer. |
| Floor | 1,000 sats | Applies to the combined total when the percentage lands under it. |
| Security bond | 15% | Both sides. Returned in full on a clean trade. Makers can lower it or waive it entirely. |
| Mining fee | split | Halved between the two of you, deducted in the same transaction that releases escrow. |
On a 0.01 BTC trade the maker pays 1,000 sats and the taker pays 7,000. There is no separate invoice, no deposit to top up and no way to skip the fee, because it comes out of the payout itself.
Fiat never touches the bot. You pay the other person directly on a rail you both already use. Each one carries its own settlement window and its own chargeback risk, and reversible rails get a lower ceiling per trade.
| Risk | Rails |
|---|---|
| Irreversible | Cash in person, cash deposit machine, cardless cash withdrawal, domestic and international wire |
| Low | UPI, IMPS / NEFT, Pix, M-Pesa |
| Medium | SEPA, SEPA Instant, Faster Payments, Zelle, Interac e-Transfer, PayID / Osko, Revolut, Wise |
| High | ACH transfer |
Currencies: USD, EUR, GBP, INR, NGN, BRL, CAD, AUD, ZAR, TRY, ARS, MXN, PHP, IDR, VND, JPY, KES, CHF.
Arithmetic. Spending from the escrow address needs two signatures and we hold one key. A completely compromised server, database and arbitration key still produces one signature. The honest caveat is the one in section 02: we could collude with your counterparty, which is inherent to 2-of-3 and is why bonds and trade ceilings exist.
There are no documents, no selfies and no identity checks. The bot knows your Telegram account and whatever payment details you hand to the person you are trading with. Your bank still sees the fiat leg, though, so a trade is unintermediated rather than invisible. Do not confuse the two.
Your coins are in a multisig address, not in our custody, so downtime delays a trade instead of freezing funds. The escrow descriptor can be rebuilt from the trade record, and the buyer and seller keys reach the 2-of-3 threshold between themselves without us.
We cannot get it back for you. On the default setup the phrase is shown once and we keep only your public key, which is exactly what stops us from touching your coins. Write it down before you fund anything. There is also a stored-key mode where the seed stays encrypted under a passphrase only you know, which is easier to live with and less safe.
What kills a P2P exchange is having nobody to trade with, not bad design. A bot sits where people already are, runs fine on a cheap Android phone, and needs no install and no signup. The cost is the transport: bot chats on Telegram are not end-to-end encrypted, which is covered above.
Same escrow model as Bisq without the desktop client and without the DAO. Different from RoboSats in that it settles on-chain rather than over Lightning, and that it carries local rails such as UPI, Pix and M-Pesa rather than a generic transfer list. If you already run Bisq happily, it is a more mature system than this one and you should probably keep running it.
Depends where you live, and the rules vary a lot by country. We are not qualified to tell you what applies to you, so ask someone who is.
If nothing on the book is worth taking, put up your own at a price you would be happy to get filled at and leave it there. Offers last ten days, makers pay 0.10% instead of 0.70%, and if you price it against the index it keeps up with the market on its own.