ZcashZecZcashIndependent Zcash Community
ZEC$1,530.96▼ 1.75%
24h High$1,622.95
24h Low$1,518.32
24h Vol$1.12B
Market Cap$25.96B
Rank#9
ZEC$1,530.96▼ 1.75%
24h High$1,622.95
24h Low$1,518.32
24h Vol$1.12B
Market Cap$25.96B
Rank#9
← Back to Blog

· 12 min read

Zcash on Ledger: How Native Shielded (Ironwood) ZEC Support Works (2026)

Ledger's own Zcash app changed substantially on September 23, 2026: it now supports native Ironwood-shielded ZEC directly inside Ledger Wallet™ Desktop, with no separate companion app needed to send or receive it. This guide covers exactly what that does and doesn't cover, which devices and software versions it needs, how to actually use it, and — if you held shielded ZEC on a Ledger before this update — what you need to do about the old app before it's removed.

Ledger Zcash support information last verified against Ledger's own blog post, the LedgerHQ/app-zcash GitHub repository's release tags, and the Zcash Community Grants tracker. Ledger's own support pages and forum.zcashcommunity.com were unreachable during this research pass — see Sources & further reading below for exactly what was and wasn't independently confirmed.

A note on "Ironwood" (NU6.3) support

Zcash's proposed new shielded pool, Ironwood (NU6.3), is widely reported as having activated on mainnet on July 28, 2026, and most actively-maintained wallets have shipped real support for it. But per our own independent check of the official Zcash specification (see our Network Upgrade Tracker), the zcash/zips repository still names NU6.2 — not NU6.3 — as the most recent formally settled Mainnet upgrade. Everywhere this guide says a wallet "supports Ironwood," it means that wallet's own software ships Ironwood-labeled functionality — not that Ironwood's mainnet status is settled fact.

Quick answer

Ledger now has real, native shielded Zcash support — but it's specifically for Zcash's newest shielded pool, Ironwood, not "shielded ZEC" in general. A single Ledger account can now show both a transparent balance and an Ironwood-shielded balance, built into Ledger Wallet Desktop itself, with every transaction still confirmed and signed on the physical Ledger device. It needs Ledger Wallet Desktop 4.21+ and Zcash device-app v3.9.4+, it's desktop-only for now, and it does not show or spend older Sapling or Orchard balances. If you used Ledger's separate, older "Zcash Shielded" app for any shielded ZEC before this update, that app is being removed on November 5, 2026, and it does not share accounts with the new one — see migrating off the legacy app below if that applies to you.

Does Ledger support Zcash?

Yes, and it has for a long time — Ledger has supported transparent ZEC (public, Bitcoin-style balances and transactions) for years through its standard Zcash app. What changed on September 23, 2026 is that the same, Ledger-developed app now also supports shielded ZEC natively, for the first time, without requiring a separate companion app for that specific job.

What's new: native Ironwood shielded ZEC support

Per Ledger's own blog post announcing the feature, shielded ZEC is now managed natively inside Ledger Wallet Desktop, built on Zcash's Ironwood pool. Concretely, that means:

  • One Ledger account can display both a transparent and an Ironwood-shielded ZEC balance, rather than needing two separate accounts or apps.
  • Sending and receiving shielded ZEC, and shielding transparent ZEC into the Ironwood pool, all happen from inside Ledger Wallet Desktop itself.
  • Every transaction — transparent or shielded — is still confirmed and signed on the Ledger hardware device, the same as any other Ledger asset.

The work was backed in part by a Zcash Community Grant (Issue #152) funding the device app, the underlying Orchard/Ironwood key support, and the Ledger Wallet integration.

What is Ironwood?

If you're new to Zcash's shielded pools: Zcash has had several generations of shielded (private) technology over the years — Sapling, then Orchard, and now Ironwood, introduced by the NU6.3 network upgrade. Each new pool is a technical upgrade to how shielded transactions are built and verified; Orchard is now exit-only (value can leave it, but nothing new can enter), and Ironwood is the pool current wallets are migrating toward. See Ironwood in our glossary, or the full Ironwood/NU6.3 status write-up for the deeper technical picture — including why Ironwood is running on mainnet while its formal specification document is still marked Draft.

Ledger's new integration is built specifically for Ironwood. That's an important distinction, not a technicality: it's why this guide (and Ledger's own materials) describe the feature as Ironwood-only rather than as blanket "shielded ZEC" support.

Ledger's Zcash support matrix

CapabilityStatus
Transparent ZEC (send/receive)Supported
Ironwood-shielded ZEC (send/receive)Supported, native, in Ledger Wallet Desktop
Sapling-shielded ZECNot shown or spendable via the new integration
Orchard-shielded ZECNot shown or spendable via the new integration
Single account, transparent + shielded togetherSupported
Desktop (Ledger Wallet Desktop)Supported
Mobile (Ledger Wallet mobile app)Not supported
Transaction signingAlways on the physical Ledger device
Shielded memosNot confirmed either way — check Ledger's current release notes

This table reflects our own review as of the date on this page — see Sources & further reading for exactly what was checked and what remains unconfirmed.

Supported Ledger devices

  • Ledger Nano S Plus, Ledger Stax, Ledger Flex — named by Ledger as supported at launch.
  • Ledger Nano X — disputed. Ledger's own support materials describe it as not yet enabled for the shielded flow specifically (one report attributes this to a device performance/timeout issue still being worked on), while Ledger's own app-zcash GitHub repository shows a compiled Zcash app build for the Nano X dated the same day as the other supported devices. Until Ledger's own documentation agrees with itself, treat Nano X shielded support as unconfirmed rather than assuming either way.
  • Ledger Nano S — confirmed unsupported by every source checked, with no conflicting signal.
  • Newer entry-level Ledger devices — some reporting describes at least one newer, entry-level Ledger device as not yet enabled for this feature either. We could not independently confirm the exact device name at a primary-source level, so we're not naming one here — check Ledger's own, current device-support page for your specific model before assuming it's covered.

Software requirements

  • Ledger Wallet Desktop 4.21 or later. (Ledger Wallet is the current name for the product previously called Ledger Live, renamed in November 2025 — if you're following an older guide that says "Ledger Live," it's describing the same app.)
  • Ledger's own Zcash device app, version 3.9.4 or later, installed via Ledger Wallet Desktop's app manager. This is confirmed directly from signed release tags in the LedgerHQ/app-zcash GitHub repository, dated September 21, 2026 — two days before the feature's public announcement.
  • Desktop only. Ledger's own materials state this is not currently compatible with Ledger Wallet's mobile app.

If either version is out of date, the app will generally fail at the signing step for a shielded transaction specifically — see our wallet troubleshooting guide's hardware-signing section if that happens to you.

Setting up Zcash on Ledger

  1. Update Ledger Wallet Desktop to 4.21 or later.
  2. Connect your Ledger device and open Ledger Wallet Desktop's app manager (Ledger's equivalent of an app store for the device).
  3. Install or update the Zcash app to v3.9.4 or later.
  4. Add a Zcash account inside Ledger Wallet Desktop. If you already had a transparent-only Zcash account from before this update, check Ledger's current instructions on whether it gains shielded support automatically or whether a fresh account is needed — this specific mechanic wasn't independently confirmed for this guide.
  5. Confirm the setup on the device itself when prompted — Ledger's standard pattern of verifying account details on the device's own screen before trusting anything the computer shows you.

Receiving ZEC on Ledger

Because a single account now covers both pools, Ledger Wallet Desktop shows one address (or address set) that can receive either a transparent payment or an Ironwood-shielded one, depending on what the sender uses. As with any Zcash wallet, always verify the receiving address on the Ledger device's own screen, not only on the computer display, before sharing it or confirming a receive.

Sending, shielding and unshielding ZEC

  • Sending shielded (Ironwood) ZEC works from inside Ledger Wallet Desktop like any other send: you build the transaction on the computer, and the Ledger device shows you the transaction's key details and requires a physical confirmation before it signs.
  • Shielding transparent ZEC — moving existing transparent ZEC into the Ironwood pool — is available the same way, from the same account.
  • Moving ZEC back to transparent (unshielding) is also supported, again confirmed and signed on-device.

In every case, the computer-side software builds the transaction and generates the necessary shielded proof material; the Ledger device's job is to show you what you're actually authorizing and to perform the cryptographic signing with a key that never leaves the device. That split is the same "Clear Signing" principle Ledger uses for its other supported assets — the device is what you trust to show and sign the truth, not the computer alone.

What happens to your Sapling and Orchard balances?

Not being shown is not the same as being lost. If you have ZEC sitting in the Sapling or Orchard pool, that ZEC is still yours, still recorded on the Zcash blockchain, and still controlled by your keys — Ledger's new app simply doesn't currently display or let you spend it. To actually see or move Sapling/Orchard funds, you generally need either:

  • A wallet that still supports those pools directly (several current Zcash-native wallets do — see the Zcash wallet directory), restored with the same recovery phrase or keys; or
  • To have already migrated those funds to Ironwood using a wallet that offers that migration flow, before switching to Ledger's new app.

Since Orchard is exit-only network-wide (nothing new can enter it, regardless of which wallet you use — see our Ironwood migration coverage), there's no urgency created by Ledger's app specifically here. The urgency described in the next section is different, and does apply to a specific deadline.

Migrating from the legacy "Zcash Shielded" Ledger app

Before this update, the only way to get any shielded ZEC on a Ledger was a separate, third-party app built by Zondax, called "Zcash Shielded." That app is being removed from Ledger Wallet's app catalog on November 5, 2026.

This matters more than a typical app deprecation for one specific reason: the old Zondax app and Ledger's new, native app use different account-derivation paths. That means Ledger's new app genuinely cannot see or reconstruct an account that was created under the old app — it isn't a matter of the balance simply not being displayed yet.

If you have any balance under the old "Zcash Shielded" app — including Sapling-pool ZEC — the practical step is to move it to an account created with Ledger's own new Zcash app before November 5, 2026, while the old app is still installable and usable. Your underlying recovery phrase itself isn't deleted or changed by the old app's removal, but recovering funds held under its specific derivation afterwards means restoring that same phrase into another wallet that understands that derivation path — not simply reopening Ledger Wallet's new app and expecting the balance to appear.

Ledger Wallet Desktop vs. mobile

As of this guide, native shielded Zcash support is a desktop-only feature of Ledger Wallet. Ledger's own materials state it isn't currently available in Ledger Wallet's mobile app. If you primarily use Ledger from a phone, transparent ZEC still works there the same as before, but shielded ZEC currently requires the desktop app.

Ledger vs. Keystone for Zcash

Both are legitimate, but genuinely different, hardware-backed paths to holding shielded ZEC — this is a factual comparison, not a recommendation that one replaces the other:

LedgerKeystone 3 Pro
Shielded pool coveredIronwood onlyDepends on the paired companion wallet
ConnectionUSB / Bluetooth, via Ledger Wallet DesktopFully air-gapped, QR codes only
Where the transaction is builtLedger Wallet Desktop, on your computerA paired phone app (e.g. Zodl), which also generates the shielded proof
Companion app required for shielded ZECNo — built into Ledger Wallet Desktop itselfYes — Keystone pairs with a software wallet such as Zodl
PlatformDesktop onlyMobile (via the paired app)

Neither is a strictly better default. If you want a phone-based, fully air-gapped workflow and your paired wallet's shielded-pool coverage fits your needs, Keystone's model may suit you better. If you'd rather manage everything from a desktop app with a Ledger device you may already own for other assets, Ledger's new integration is a real, native option — within its current Ironwood-only scope. See the full hardware-wallet comparison on our wallet directory for the complete, currently-verified picture of both.

Common problems and troubleshooting

A few Ledger-specific issues worth knowing before you assume something is broken:

  • Shielded transaction won't sign. Almost always an out-of-date Ledger Wallet Desktop or Zcash device app — confirm you're on 4.21+ and v3.9.4+ respectively.
  • Sapling or Orchard balance "missing." Expected behavior, not a bug — see what happens to your Sapling and Orchard balances above.
  • Old shielded balance not appearing after installing the new app. Likely an account created under the old "Zcash Shielded" app — see migrating from the legacy app above.
  • Using Ledger Wallet mobile. The shielded feature isn't there yet; use the desktop app.

For anything not covered here — sync issues, a specific pending or failed transaction, or restoring a Ledger phrase into another wallet — our general Zcash wallet troubleshooting guide covers those symptoms in depth, including a dedicated note on Ledger's hardware-wallet phrase caveats.

Sources & further reading

This guide is based on Ledger's own blog post announcing native shielded Zcash support, the LedgerHQ/app-zcash GitHub repository's own source, changelog and signed release tags, and the Zcash Community Grants Issue #152 tracking the funded work. Ledger's own support site and the Zcash Community Forum were unreachable during this research pass, so some details (the exact per-device rollout, and the grant's internal milestone sign-off status specifically) rest on secondary corroboration rather than a directly-read primary page, and are flagged as such above rather than stated as settled fact. For the complete, continuously-maintained wallet comparison this article draws from, see our Zcash wallet directory; for the underlying protocol change, see our Ironwood/NU6.3 status write-up and the Network Upgrade Tracker. If you're deciding between wallets more broadly, Best Zcash Wallets in 2026 and How to Choose a Zcash Wallet cover the non-hardware options in depth.

FAQ

Common questions

Does Ledger support Zcash?

Yes. Ledger has long supported transparent ZEC, and since September 23, 2026 its own app also supports native Ironwood-shielded ZEC directly inside Ledger Wallet Desktop, with no separate companion app required.

Does Ledger support shielded Zcash (ZEC)?

Yes, but specifically the Ironwood shielded pool. Sapling and Orchard shielded balances are not shown or spendable through Ledger's new native integration, even though Ledger's own device app previously had some support for those pools in earlier versions.

What is Ironwood, and why does it matter for Ledger's Zcash support?

Ironwood is Zcash's newest shielded pool, introduced by the NU6.3 network upgrade. Ledger's new integration is built specifically for Ironwood, which is why it's described as Ironwood-only rather than as general shielded ZEC support.

Which Ledger devices support shielded Zcash?

Ledger's own materials name the Nano S Plus, Stax and Flex as supported at launch. The Ledger Nano S is confirmed unsupported everywhere checked. The Ledger Nano X's status is unclear: Ledger's own support content describes it as not yet enabled for the shielded flow, while Ledger's own GitHub repository shows a compiled build for it dated the same day as the supported devices. Treat Nano X support as unconfirmed until Ledger's own documentation is consistent.

What software do I need to use shielded Zcash on Ledger?

Ledger Wallet Desktop version 4.21 or later, and the Ledger-developed Zcash device app version 3.9.4 or later. The feature is desktop-only; it is not available in Ledger Wallet's mobile app.

Can I still access my old Sapling or Orchard ZEC on Ledger?

Your ZEC itself isn't lost — Sapling and Orchard balances simply aren't displayed or spendable through Ledger's new native app. To see or spend them, you generally need a wallet that still supports those pools directly, or to have migrated them to Ironwood beforehand with a wallet that offers that migration.

What happens to the old 'Zcash Shielded' Ledger app?

That separate, Zondax-built app is being removed from Ledger Wallet's app catalog on November 5, 2026. It used a different account-derivation path than Ledger's new native app, so the new app cannot see funds created under the old one. Anyone with a balance there needs to move it to an account created with Ledger's new Zcash app before that date.

Can I use Zcash on Ledger on mobile?

Not for the new native shielded feature. As of this guide, it's available in Ledger Wallet Desktop only, not in Ledger Wallet's mobile app.

Is a Ledger safer than a software wallet for holding Zcash?

A hardware device like Ledger keeps your private keys on a dedicated offline chip and requires you to confirm each transaction on the device itself, which is a meaningfully different security model than a phone or desktop app alone. That's a real security property, not an absolute guarantee — you still need to protect your recovery phrase, keep the device and its software genuine and updated, and understand exactly what a given integration does and doesn't cover.

How does Ledger compare to Keystone for shielded Zcash?

They're architecturally different, not simply better-or-worse. Keystone pairs over QR codes with a phone app (typically Zodl), which builds the transaction and shielded proof while Keystone verifies and signs, with no cable or wireless connection at all. Ledger's new integration runs the equivalent process inside Ledger Wallet Desktop on your computer, with the Ledger device itself confirming and signing over its USB or Bluetooth connection. Neither is a strictly better default — which fits depends on whether you want a phone-based air-gapped workflow or a desktop-based one, and which shielded pools you need covered.

Does Ledger's new Zcash app support memos?

This wasn't confirmed either way in the sources checked for this guide. If shielded memos matter for your use case, confirm current memo support in Ledger's own release notes before relying on it.

Get every update the second it's posted

Join ZecZcash, our independent Zcash community on Telegram, for real-time news, price talk and discussion.

Join @ZecZcash on Telegram