- System & integrations
- Bastion’s account/custody infrastructure connected to Coinbase Prime custody vaults — wallet provisioning, transfer authorization, and reconciliation — all routed through the platform’s existing compliance gating (Sardine KYC/KYB, TRM Labs screening, jurisdiction, freeze/unfreeze). On the inflow side, per-user smart-contract deposit wallets collect funds and auto-sweep them into Coinbase Prime across EVM and Solana. Custody is layered and never interchangeable: Fireblocks MPC vaults secure the stablecoin’s protocol-authority keys (mint, upgrade, freeze/seize), an in-house AWS Nitro-enclave signer holds the app wallets, and Coinbase Prime is the qualified custodian for client funds.
- My contribution
- I contributed to the end-to-end integration of Coinbase Prime: provisioning the vault mapping, the compliance-gated transfer-authorization flow, and the reconciliation between Bastion’s ledger and Prime balances, plus the deposit-collection layer (per-user deposit wallets auto-swept into Prime, multi-chain, with per-customer freeze controls). Wiring Prime correctly meant understanding the whole custody model — how Fireblocks governs the stablecoin’s protocol-authority keys and how the in-house enclave signer holds the app wallets — so deposit, withdrawal, and redemption flows compose cleanly across the three layers.
- In production today
- Institutional clients custody assets in Coinbase Prime through Bastion today — every outbound transfer is compliance-gated, and balances are continuously reconciled against the custodian.