I. Introduction
Cryptocurrencies such as Bitcoin suffer from well-known privacy limitations. These stem from the fact that each transaction on the currency's public ledger is explicitly linked to one or more preceding transaction outputs from which funds originate. A number of academic works [?], [?], [?], [?], [?] and for-profit companies [?], [?] have demonstrated that sensitive payment information can be extracted from the resulting public transaction graph.