Cointime

Download App
iOS & Android

Custodial vs Non-custodial Wallets: A Life-Saving Difference

If there was only one lesson to learn from the downfall of crypto exchange FTX, it would be to never keep more crypto on exchange wallets than necessary. For the sake of buying and trading, one can hardly navigate around a CEX, but crypto savings should never be stored in exchange wallets.

Although one can easily get another impression due to easy log-in and handling those big exchanges offer, the funds kept in an exchange wallet are not truly yours as the exchange has custody over the coins. They can make a business decision to block your account, freeze your funds or deny transactions and there is nothing you can do about it.

Among crypto enthusiasts, there is a famous moniker that goes by “Not your keys, not your coin,” but it sounds almost too peaceful as we witness the dire events around Alameda Research, FTX and Binance unfold.

What has happened?

In the 45th calendar week of the year 2022, a news article and a set of tweets set events in motion that can only be described as earthquakes that are shaking the entire crypto world. Let’s go through a quick chronology to get a better grasp of the situation’s gravity:

The itchy detail: In the due diligence regarding the supposed acquisition of FTX by Binance, news came to light that FTX allegedly used customer deposits to improve the balance sheet of Alemeda Research and to cover up a series of trading losses on the side of Alameda, among them a 500mn USD loan agreement with now bankrupt crypto lender Voyager Digital. So, FTC has allegedly used their customer’s funds for their sister company’s trading business. Although it is not proven (yet,) it is a proper explanation of why they had to pause withdrawals of customers’ funds.

FTT, the TFX token, is down about 90% on Nov 10th vs. Nov 5th. It’s not impossible FTX won’t be able to recover from this. Moreover, it took the crypto realm with it, with BTC and ETH each losing double-digits and a lot of private investors losing sizeable shares of their private funds, if not all of them.

Why are exchanges so unsafe to store your crypto on?

Now that we discovered that not even the big guns in the exchange business are trustworthy guardians for your crypto assets, we first should look at the difference between a custodial and a non-custodial wallet.

What does that mean: when dealing with crypto wallets, you always have one (or more) sets of keys, a private key, and a public key. Whereas the public key represents the public address of your wallet or the equivalent to your email address in your PayPal, the private key is used to sign transactions and thus, roughly equals your PayPal password or your pin in traditional banking.

In custodial wallets that exchanges like FTX, Coinbase, Binance, or Kraken are running, the exchange is holding your private key in their custody and using it to approve transactions in your name. What makes this service convenient, as you have nothing more to remember than a log-in for the exchange (and by that, not any more complicated than with every other online service), is the equivalent of granting your bank all of your passwords and pins and empowering them to send transactions on your behalf as long as you click a button. This makes it inherently dangerous, as the exchange can at any moment decide to not sign any more transactions with your private key and there is nothing you can do about it.

As this is arguably the worst case and would quickly put an exchange that performs in such a way out of business, there are much more shades of grey here: Custodial wallets can block certain transactions or specified groups of users. Remember the Canadian trucker protests in February of 2022? The Canadian Government effectively sanctioned 34 crypto wallet addresses under their Emergencies Act. Still, wallet addresses in themselves may be anonymous, but crypto exchange accounts are not (at least to government authorities), and so wallets can be tied to real persons who are on the government sanctions list. Kraken CEO Jesse Powell has confirmed they would have to comply in such a situation and is cited with the following statement: “If you’re worried about it, don’t keep your funds with any centralized/regulated custodian. We cannot protect you.”

Where to store your crypto instead?

Short answer: In a non-custodial wallet.

They provide a critical advantage to custodial wallets, as here the only custodian of your private key is you and no one else. When opening a non-custodial wallet, you are provided with a seed phrase of 12, 18 or 24 words which is used to decrypt your private key. Only with the seed phrase you can access the wallet from a different device. Popular non-custodial wallets include software solutions like Electrum Wallet for Bitcoin, Metamask for Ethereum-based tokens, or Bitpay for crypto-agnostic solutions.

The most secure version would be using a non-custodial hardware wallet, as here the private key lies encrypted on a piece of hardware that you own. You’re only able to sign transactions when the hardware device is connected to your computer, which makes it one of the most secure ways to store your crypto. Famous representatives are Ledger and Trezor.

Final Thoughts

As the disturbing events around the downfall of FTX and the freezing of customer accounts are unraveling, one always has to be crystal clear about the following facts when keeping funds in an exchange wallet:

  • You don’t have reliable access to your funds in a time of need as the exchange can always decide to halt withdrawals.
  • You can’t effectively stop them from gambling with your funds or complying with government sanctions which would leed to your funds being frozen.

In short, you don’t own the crypto you store in an exchange wallet. Period.

Comments

All Comments

Recommended for you

  • Hong Kong police arrested a 1 million USDT fraud gang and seized 3,000 ghost coins

    According to a report from Sing Tao Daily, Hong Kong police received a report from a 35-year-old man on April 12th, claiming that he was unable to recover cash after reselling approximately 1 million yuan worth of virtual currency USDT in a shop in Tsim Sha Tsui and suspected that he had been deceived.After an investigation by the Technology and Wealth Crime Group of the Yau Tsim Police District, the police launched an operation in multiple areas of Hong Kong on May 13th and arrested three local men aged between 31 and 34 years old, who were suspected of obtaining property by deception.The police found 3,000 fake banknotes, a money clip and a counting machine in the shop. The investigation showed that the arrested men showed the victim fake banknotes and asked him to transfer virtual currency to a designated wallet, and then refused to hand over the cash for various reasons, resulting in the victim losing approximately 1 million yuan worth of virtual currency.

  • Yesterday, Tether issued $110 million USDT and redeemed $23 million USDT

    According to ChainArgos monitoring, on May 14th, Tether issued a total of 110 million USDT and redeemed 23 million USDT.

  • El Salvador Launches Bitcoin-Based Financing for New Airport Hotel

    El Salvador has launched the announcement of Bitcoin financing for the vacation hotel at San Salvador International Airport, with a target financing goal of $6.25 million. The funds will be used to build a five-story facility covering 4,484 square meters, with 80 guest rooms, commercial space, swimming pool, and other facilities. The hotel is located inside the airport, making it the only hotel service provider in the area. The minimum investment amount for this investment opportunity is $1,000, with 6,250 tokens available for selection, each token paying a 10% annual yield every six months. The project is supervised by Inversiones Laguardia SA de CV and promoted through Bitfinex Securities.

  • US Bitcoin ETF holds nearly $60 billion worth of BTC

    As monitored by HODL15Capital, the value of Bitcoin held by US Bitcoin ETFs is currently close to $60 billion. This week, a total of 2,667 Bitcoins were purchased. Grayscale GBTC is the only ETF with net outflows.

  • Sonne Finance: This attack was a donation attack. We are investigating the attacker and have suspended the market.

    Sonne Finance released an attack analysis report. This was a donation attack. Sonne had avoided this problem in the past by adding a collateral factor of 0% to the market, adding collateral and then destroying it, and only then increasing c-factors according to the proposal. Sonne recently passed a proposal to add the VELO market to Sonne. This transaction was arranged on a multi-signature wallet, and c-factors were arranged to be executed within 2 days due to the time lock. When the 2-day time lock for creating the market ended, the attacker executed 4 of the transactions and then executed the transaction to add c-factors to the market. The attacker was able to use the protocol to obtain approximately $20 million in funds through a known donation attack. Seal contributors quickly noticed this issue and reserved approximately $6.5 million by adding VELO worth approximately $100 to the market. Sonne is investigating the attacker and has suspended the market to mitigate further losses. Sonne is prepared to offer a bounty to the attacker and promises not to pursue the issue further if the attacker returns the funds.

  • Sonne Finance confirms attack, but still has about $6.5 million in funds

    On May 15th, Sonne Finance announced that its Optimism protocol had suffered a known donation attack, resulting in a loss of approximately $20 million. The attack exploited a vulnerability in the newly launched market and within two days of its creation, the attacker used a multi-signature wallet and time-lock function to execute critical transactions, successfully manipulating the market's collateral factors (c-factors). Despite Sonne's team quickly organizing a response to the attack and suspending the market within 25 minutes of discovering the issue to minimize further losses, approximately $6.5 million in funds were still retained. Sonne's team is working hard to track down the identity of the attacker and has offered a bounty to the attacker in the hopes of returning the funds to avoid further investigation. At the same time, Sonne's team sincerely apologizes for this incident and is reaching out to all possible partners to try to recover the funds.

  • Huobi HK’s application for a Hong Kong virtual asset trading platform license was withdrawn on May 14

    On May 15th, according to updated data on the official website of the Hong Kong Securities and Futures Commission, Huobi HK's application for a virtual asset trading platform license submitted to the Hong Kong Securities and Futures Commission was withdrawn on May 14th.

  • A bill protecting Bitcoin rights has been signed into law in Oklahoma

    A bill protecting basic Bitcoin rights has been signed into law in Oklahoma. Oklahoma will now defend the rights to self-custody, consume Bitcoin and digital assets, and operate nodes for mining Bitcoin. It will also prohibit additional taxation when Bitcoin and digital assets are used as a payment method.

  • Fed's Schmid: Low interest rate environment "may not necessarily" return

    The Federal Reserve's Schmid said that the overall economy is still strong. Inflation is still too high, and the Federal Reserve has more work to do. Interest rates may remain high for a period of time, and I prefer to reduce the Federal Reserve's balance sheet as much as possible under the premise of compliance with the operating framework. The low interest rate environment may "not necessarily" return.

  • a16z partner: Americans have accepted digital assets, but current regulatory approaches limit innovation and privacy

    Web3 supporter and a16z partner Chris Dixon (cdixon.eth) posted on social media that in the next two weeks, the House of Representatives will vote on the most important crypto legislation to date, the "21st Century Financial Innovation and Technology Act" (FIT21). We have long called for clear regulation to protect consumers and innovation, and the FIT21 bill will achieve this.