Cointime

Download App
iOS & Android

Crypto Custody — Becoming Your Own Bank

Validated Project

In the last few years, cryptocurrencies have gone from being a niche technology to something far more mainstream. Big brands have experimented with NFTs, Web3 Play2Earn gaming has become more well-known and it’s become easier than ever to add coins and tokens to your savings portfolio thanks to centralized exchanges such as Binance and Coinbase. Even mainstream “TradFi” companies such as Revolut offer the option to buy cryptocurrencies. However, that convenience comes at a price.

Centralized Exchanges and Custodial Wallets

When you buy coins or tokens on a centralized exchange, those tokens are held in the exchange’s wallet. This means you have to trust that the exchange:

  • has the coins they claim they do,
  • will allow you to withdraw those coins when you want them,
  • is storing your holdings securely and won’t get hacked.

Those risks aren’t just limited to CeFi (Centralized Finance) companies, either. If you’re dealing with DeFi (Decentralized Finance) smart contracts that require you to lock up funds for any length of time, there’s the risk of the contract being hacked by a malicious third party.

One look at Web3IsGoingGreat, our own blog on The Role of Cover Protocols in Mitigating Risks, is enough to show that custodial risk is too great to ignore. The recent high-profile collapses of platforms and exchanges such as Celsius and FTX highlight how important it is for long-term investors to take ownership of their crypto.

Self-Custody for Your Crypto

While it makes sense for day traders to keep their cryptocurrencies on the exchanges they use for trading, if you plan to hold a currency for a long time, it’s worth considering self-custody options. The cryptocurrency community has a saying — Not Your Keys, Not Your Crypto (NYKNYC).

Cryptocurrencies use a combination of public keys (shared) and private keys (only the owner of the currency knows). If you are not in possession of the private keys for the wallet in which the coins/tokens are stored, then those assets are not yours — at least in the sense that you cannot access them.

Self-custody begins with withdrawing the assets from the exchange and holding them in a wallet for which you have the the keys. Those wallets can be:

Hot wallets are incredibly convenient, but that convenience brings some security risks. Metamask is a browser extension that makes it easy to use DApps and Web3 services and manage multiple tokens and assets all in one place. Electrum is a desktop application that gives you instant access to your Bitcoin. Some other hot wallets run on your mobile phone. What all of these things have in common is that all you need is access to the device and your wallet password, and you can transact using that wallet.

If you’re running a hot wallet and the device gets hacked, and the attacker gains access to the wallet’s keys, you could lose all funds in the wallet. To combat that risk, many people use cold wallets for long-term storage.

Cold wallets are devices that store the keys offline. It’s possible to configure Electrum to work in this way, but most cold wallets are physical devices that look a lot like USB memory sticks. For example, Ledger and Trezor offer apps to view and manage your wallet. However, you can’t send cryptocurrencies from the wallet without “signing” the transaction using the physical device. This adds an extra layer of security at the cost of convenience. If you’re away from home and want to sell some Ethereum or send some Chainlink to a friend, you can’t do so if you aren’t carrying your hardware wallet.

It’s possible to purchase a Ledger Nano S for around $100. If your cryptocurrency holdings are worth more than a couple of hundred US dollars and you plan on keeping them for a long time, it’s well worth making that purchase for peace of mind.

Securing Your Cryptocurrency Wallets

Most modern cryptocurrency wallets use a recovery phrase (typically 12–24 words) rather than a collection of random letters and numbers. If you lose your wallet, you can recover it by entering that phrase into any hardware or software wallet that supports the same standard.

In addition to the recovery phrase, some wallets may use an “extra word” for added security and a password to unlock the wallet. When you go through the wallet creation process, note these details. If you forget them, there’s a risk you could lose access to the wallet.

Always keep in mind that anyone who knows the recovery phrase can create a copy of your wallet. Follow these golden rules when storing your coins and transacting with cryptocurrencies:

  1. Keep the wallet and recovery details separate, ideally out of public view.
  2. Do not re-use passwords for exchanges or wallets on other services.
  3. Never store your keys/recovery phrase online or on a computer connected to the internet.
  4. Never enter your wallet’s recovery details into a website, or share them with a third party, even if that third party claims to be from “Trezor Support”.
  5. If you have the luxury of doing so, keep a spare computer that isn’t used for day-to-day browsing to manage your cryptocurrencies.
  6. Do not install untrusted applications on your computer.
  7. Do not connect your Metamask wallet to a website or DApp unless you can trust it.
  8. When sending cryptocurrencies from your wallet, always verify the address you’re sending it to by checking several characters at the beginning and end of the address. Don’t just trust the address you paste from your clipboard.
  9. If your cryptocurrency holdings are large enough to make it worthwhile, test your wallet recovery procedure by attempting to recover your hardware wallet to a backup wallet while the first wallet is still working.
  10. Never reuse addresses. Most modern wallets automatically generate new addresses for each deposit request. Take advantage of this feature.

Some hardware wallet manufacturers offer steel plates to stamp your recovery phrase onto. The idea of these plates is to create a backup of your keys that will last a lifetime. Ink fades, and notepads can be mistakenly discarded. They’re also likely to be destroyed if you experience a fire, flood, or another disaster. Steel plates will survive such events, so if the worst happens, you’d still be able to recover your cryptocurrency and get back on your feet.

If you take a systematic approach to protect your self-custodied cryptocurrencies and invest in protection against custodial risk, you’ll be prepared for any eventuality.

Comments

All Comments

Recommended for you

  • Bitcoin native application platform Arch developer completes $7 million seed round of financing, led by Multicoin Capital

    Bitcoin native application platform Arch developer Arch Labs announced the completion of a $7 million seed round of financing, led by Multicoin Capital, with participation from Portal Ventures, OKX Ventures, Big Brain Holdings, CMS Holdings and Tangent.

  • Tokenization platform AgriDex completes $5 million Pre-Seed round of financing

    AgriDex, a tokenization platform on the Solana blockchain, announced the completion of a $5 million Pre-Seed round of financing, led by Endeavor Ventures, with participation from African Crops Limited, Oldenburg Vineyards, and former Goldman Sachs and Citadel executive, Hank Oberoi. It is reported that AgriDex is expected to launch its platform and token, AGRI, in the third quarter of this year. According to its white paper, AgriDex has reserved 5% of the total token supply, or 50 million tokens out of 1 billion tokens, for airdrops.

  • Multidimensional gas pricing

    In Ethereum, resources were up until recently limited, and priced, using a single resource called "gas". Gas is a measure of the amount of "computational effort" needed to process a given transaction or block. Gas merges together multiple types of "effort", most notably:

  • UXUY Completes $7 Million Pre-A Round of Financing, with Investments from Binance Labs, Bitcoin Magazine, and Other Institutions

    UXUY, the next-generation decentralized multi-chain trading platform incubated by Binance Labs, announced the completion of a $7 million Pre-A round of financing. Since its establishment, its total financing amount has exceeded $10 million. UXUY is an important builder of the Bitcoin ecosystem, and more than 100,000 traders use Bitcoin Lightning Network services through UXUY. UXUY's current round of financing has received investment from well-known institutions in Asia, North America, and Europe, such as Binance Labs, UTXO Management (Bitcoin Magazine), JDI Ventures, Bixin Ventures, SWC Global, Matrix Partners, CMS Holdings, Dewhales Capital, Comma3 Ventures, Satoshi Labs, YBB Capital, GBV Capital, Web3Vision, Pentos Ventures, NGC Ventures, Alti5, Metalpha, and GSR. The funds raised by UXUY in this round will be used for the construction of the Bitcoin ecosystem infrastructure, and will be committed to promoting the efficient and low-cost trading of Lightning Network Taproot Assets, Ordinals BRC-20, Runes, and other assets. Jordan, co-founder of UXUY, said: "We are pleased to be strategic partners with all investors! This year, we have successfully built a bridge between the Bitcoin Lightning Network and the multi-chain ecosystem. UXUY will continue to promote the use cases and popularization of the Lightning Network in trading scenarios, and make more contributions to the Bitcoin ecosystem." According to RootData, a Web3 asset data platform, UXUY is a next-generation decentralized multi-chain trading platform based on MPC wallets. UXUY actively participates in the construction of the Bitcoin Layer2 ecosystem, fully integrates into the Bitcoin Lightning Network and Taproot ecosystem, provides Lightning Address DID services to users, and becomes an important bridge connecting the Bitcoin and Ethereum ecosystems. As a decentralized multi-chain trading platform, UXUY provides immediate cross-chain trading services for Coin, Token, and Inscription among public chains through the establishment of uPool.

  • Why the Future of Ethereum is Smart (Accounts)

    In the dynamic landscape of Ethereum, the traditional concept of digital ownership through externally owned accounts (EOAs) is revealing its limitations. As Ethereum's ecosystem grows, incorporating more complex applications and expanding through layer-2 scaling solutions, it becomes evident that our foundational tools for ownership and interaction need an overhaul.

  • Taiwan's administrative agency passed four new anti-fraud laws to bring cryptocurrency traders under control

    It was announced that Taiwan's administrative management agency has passed the "New Anti-Fraud Law" to regulate cryptocurrency traders. In the future, businesses or individuals providing virtual asset services or third-party payment services must complete anti-money laundering measures and register their services or log in. Failure to do so may result in a maximum of 2 years in prison or a fine of up to NT$5 million. Businesses or individuals outside of Taiwan providing virtual asset or third-party payment services must register their companies or branches according to company law and complete anti-money laundering measures and service registration or login. Otherwise, they are not allowed to provide virtual asset services or third-party payment services in Taiwan. Qiu Shuzhen, the deputy chairman of Taiwan's financial regulatory agency, stated that there are currently around 60 to 70 cryptocurrency traders in the market, of which 25 have passed the anti-money laundering review by the financial regulatory agency. In the future, all traders will be required to declare and undergo review, and a cryptocurrency traders' association will be established for legal, administrative, and association management. Accounting professionals will also be enlisted to assist with internal control.

  • Speculatory Divergence

    There has been a growing divergence in performance between Bitcoin and Ethereum during the 2023-23 cycle thus far. This has manifested as weaker price performance for ETH, and can be explained by an overall weaker capital rotation trend, especially relative to past cycles and ATH breaks.

  • EigenLayer TVL falls back to $14.794 billion

    According to DefiLlama data, the total value locked (TVL) in Ethereum's re-staking protocol EigenLayer has fallen below $15 billion, currently at $14.794 billion.

  • The EU is considering including cryptocurrencies in the 12 trillion euro investment market, and its impact may far exceed that of US ETFs

    The European Securities and Markets Authority (ESMA) is consulting with the investment product advisory industry and experts on whether cryptocurrency assets should be included. This move could open up a broader market for cryptocurrencies, far exceeding the market size of spot Bitcoin ETFs. The plan aims to expand the scope of UCITS (EU Transferable Securities Collective Investment Scheme), with the UCITS market reaching as high as €12 trillion. If successful, this would be a key step in mainstreaming cryptocurrency assets in Europe.

  • The Usage & Evolution of Decentralized Exchanges (DEX’s)

    Checking in on pool liquidity, trading volumes and adoption across Ethereum DEX's