Transparency
The website is a convenience. The rules, the snapshot commitments, the randomness and the payouts all live on Solana, and the verification code is open source.
Everything below is public. Click any address to inspect it on Solana Explorer.
No snapshot has been committed yet.
STEP 1
When a round closes, the keeper reads every $LOTTO token account at one slot, applies the round’s on-chain eligibility rules and exclusion list, and publishes the result as a canonical JSON file.
STEP 2
The file’s sha256, its Merkle-sum root, the total eligible weight and the holder count are written into the round account. From this moment the snapshot cannot change.
STEP 3
Only after the commitment is randomness requested. For ORAO VRF the program derives the seed from the committed root and the newest Solana slot hash at commit time, so the seed does not exist before the snapshot is locked and nobody can preview the outcome of a candidate snapshot.
STEP 4
The program computes ticket = uint256(randomness) mod total weight. Each eligible wallet owns a contiguous range of tickets equal to its weight.
STEP 5
The prize can only be paid to the wallet whose committed range contains the ticket. The program checks a Merkle-sum proof whose sums are part of the committed root, so ranges cannot overlap and the winner cannot be swapped.
STEP 6
The program transfers the locked prize from its vault to the winner’s token account. Settlement is permissionless and can only happen once.