third parties without a viewing/auditing key, Once funds enter the privacy layer, tracing their provenance becomes inherently difficult. Private assets are not tied to any Ethereum account address, and any address that interacts with the privacy contract cannot be treated as a reliable indicator of ownership. Such an address might be a relayer, or simply another unrelated address that has no correlation with the actual user.
The proposal itself is intentionally scoped as an interface-level standard, rather than prescribing any concrete implementation or enforcement logic.
It defines how privacy addresses are expressed and interoperated, without constraining how individual projects choose to realize them.
This separation allows different implementations and client layers to adopt compliance-aware behaviors in ways that align with their local regulatory environments, while keeping the underlying protocol fully permissionless and minimal.
Enabling this kind of flexibility at the client and integration layer is one of the core design motivations behind ERC-8091.