Skip to content
CUNICULA

FixedFloat

Fixed and floating rate crypto swaps with no account required, supporting Lightning Network and major assets.

ff.io

Fixed and floating rate crypto swaps with no account required, supporting Lightning Network and major assets.

Common useSwapSwapOperator dataHosted
Identity checksZero KYCNo document check recorded · identity exposure level 0/4
Evidence and riskVerified evidenceCautionMaterial claims checked against current sources.; those sources show trade-offs worth reading.
Last reviewedReviewed 22 Jun 2026KYC checked 17 Jul 2026 · verified jurisdiction · Source → official siteHow to cite this pageEvidence confidence94/100
Evidence and facts

Evidence and facts

JURISDICTIONMH
CAUTIONTwo thefts were reported in 2024: $26.1M on February 16 and $2.8M on April 1. The service attributed the incidents to infrastructure vulnerabilities involving third-party providers. The operating team is not named.
AUDITED BYNo audit listed
OPERATOR DATAHosted operator recorded
EVIDENCE CONFIDENCE
SELF-REPORTED4/4
Why evidence is 94/100Formula 3.1
Source coverageMaterial claims checked against current sources
+70
Review ageOldest recorded check is 62 days old
+24

Full scoring method

LAST CHECKED2026-06-24
LAST UPDATED2026-06-22

Specs

DOCUMENT CHECKNone recorded
IDENTITY EXPOSURELevel 0/4
KYC TRIGGERSAdvertises No-KYC, but strictly adhere to OPSEC rules. Access via Tor, pay with XMR. Terms updated March 2025: orders funded from flagged sources can be suspended pending source-of-funds verification.
FEE0.5–1%
CATEGORIESSwap
FEATURESFixed rate, Variable rate, No account, Instant, Refund address
TORNot listed
REGIONSGlobal availability
Review analysis, source material, related services, and history

Analysis

OVERVIEW

FixedFloat supports fixed and floating rate swaps with no account and Lightning Network support; the jurisdiction field lists Marshall Islands, while its legal registration is separately reported as London, UK per Tracxn, with no individual founders named.

LIMITS

Two 2024 hacks are documented: $26.1M stolen in February and a further $2.8M in April by the same attacker group exploiting third-party hosting; the team cooperated with law enforcement afterward by its own account, but the record still flags user funds as being at elevated risk.

USEFUL FOR

Fits users who have weighed the 2024 breach history against the fixed-rate, no-account swap flow before sending funds.

Sources · reviewed 2026-07-16

Corporate identity

Registry-sourced, not audited. The facts below come from cited web research rather than a direct registry query. Each claim links its own source.

INCORPORATED IN
Georgiasource ↗
REGISTERED ADDRESS
88 Avtomshenebeli Street, Kutaisi 4600, Georgiasource ↗
Registry research · reviewed 2026-08-08

Frequently Asked Questions

Is identity verification required?

No identity verification is recorded for typical use. Advertises No-KYC, but strictly adhere to OPSEC rules. Access via Tor, pay with XMR. Terms updated March 2025: orders funded from flagged sources can be suspended pending source-of-funds verification.

Which payment methods are accepted?

Please check the provider site for accepted payment methods.

Where is it available?

Recorded availability: GLOBAL.

Is the operator based in a Five Eyes country?

No. The recorded jurisdiction is MH, which is not a Five Eyes country. This is jurisdiction context and does not by itself establish that a service is safer or less safe.

How are identity, operator, and evidence fields reported?

Identity exposure is level 0 of 4. A hosted operator is recorded. Jurisdiction is shown as context, not a safety verdict. Evidence confidence is 94/100 and recorded risk is caution.

Related Services

Compare

Sources and history

Evidence basis: Claims on this page are linked to published sources for comparison, not certification, audit, endorsement, or recommendation; read the methodology and coverage map before relying on an entry.