Russia is conscripting on a large scale, Europe is ready to move, and China is also working for territorial integrity. The third large-scale war in human history will begin in 2023, and Grin will be widely used by the world, anonymous, stable, and unregulated. (After its fourth birthday, it will gradually approach 1 dollar)
We need to break linkability before we can claim anonymity, but weâre getting there!
BTC came into being to subvert the worldâs production relations.ďźGRIN came into being for warďź These are just two social experiments of Nakamoto Cong.ďźPeople all over the world are looking for Nakamoto Cong.
He is there ďźEverything is arrangedďź
Iâd like to understand more about linkabilty. Does it mean that, lets say I went into a store to make a payment, if a bad actor was monitoring either the payment or node, they could know if Iâd made transactions anywhere where they were also monitoring nodes? i.e. another store or even the same store? What part of the transaction is linked if there is no address? Is it something that the wallet produces? Couldnât this just be changed for each new transaction?
Transaction building can be offline so thereâs no leak here. So there are 2 points of leakage:
- One can observe which node broadcasts the transaction but because grin uses dandelion to hide the node that introduced this transaction the âsourceâ node is not known
- Payerâs (your) utxos â generally nobody knows your utxos except for the one person in whose tx this utxo was created. Example: if you receive 5 grin from person X then this person X will see your utxo and know it belongs to you, so when he sees tx which contains your utxo as input he knows you paid for something. Payjoins (not implemented yet) hide whether you are payer or receiver but reveal one utxo of the payer - so there are some tradeoffs. You could use mwixnet on your utxo that you made in tx with person X to get a new utxo which nobody knows is yourâs so this second âleakâ doesnât exist anymore
Note that nobody can tell the amount youâre sending unless theyâre linked to the coinbase transaction (minerâs reward). In such case they can predict the upper bound of the amount.
Itâs possible I forgot about something
The primary leakage is from the fact that a transaction (today) clearly has inputs and outputs, and a chain observer can build a relational graph to cluster transactions/outputs which are related to each other. As @vegycslol already pointed out, things like payjoin, coinswap, mwixnet, etc will help break that linkability, but until those solutions (at least one of them, but hopefully multiple) become widely used, the transaction graph is fairly transparent.
OXT has a good write-up explaining how linkability in the face of anonymity and chain analysis firms:
Obviously Grin has no addresses and has confidential amounts, so Grin is in a much better situation than Bitcoin, but the points about transaction linkability are still relevant to Grin.
There is also https://oxtresearch.com which has some great examples of how chain analysis firms use tx linking to identify entities on a block chain. (Again focused on Bitcoin, but much of it is still relevant to Grin).
Iâd only add that wallet clustering is pretty powerful and still possible/practical, even with blinded amounts and no addresses.
But the future is bright for Grin, and once we break linkability, there will be no competition in the privacy space
Whatâs wallet clustering, how does it leak and what?
Iâve always thought and i still believe that linkability is not really a big issue if you have no addresses and hidden amounts. So imo itâs a big problem for btc but almost non-existent in grin.
Clustering is the act of looking at the transaction graph and finding âclustersâ of related transactions to identify which transactions belong to one entityâs wallet.
It depends on the following details:
- most wallets have several UTXOs to spend
- most transactions emit a change UTXO
- many transactions consume multiple UTXOs
If you graph the transaction flow on a network, you can see patterns of transactions which spend each otherâs outputs and can conclude with some certainty which transactions belong to a common wallet. External data can vastly improve this analysis, such as temporal analysis, or any identified transactions (e.g. from exchange data).
This is unfortunately an all too common fallacy. Even if you donât know how much money is in that wallet, if you know who sent any one of those transactions, then you can attach an identity to the entire entity. If you seek anonymity, you need to break linkability. In many cases, knowing who you transacted with is much more damaging than the actual value of the transaction.
I highly recommend researching it more (the OXT guys have lots of good info). Hiding amounts and removing addresses are 2/3 of the problems, but we need to get all 3/3 before Grin is usable as privacy tech.
Thanks guys. Definitely gonna read more. So Iâm terms of linkability, does any other current privacy coin solve it? I guess monero does?
Monero breaks linkability with ring signatures (as do several other privacy coins). You can also break linkability in non-private coins, e.g. by coin joining some Bitcoins.
Each approach has its tradeoffs, but Grin with coinswap+payjoin will be the ideal balance, once those projects are ready
Impossible. Please just let this project die. If grin is successful it will be very bad
You can imagine, if World War II, if Grin had been in place, maybe it wouldnât have been so bad, because the purpose of the war was to redistribute wealth and shift productivity.
Think itâs just a coincidence Grin was born in 2019? Or was the coronavirus that swept the world in 2020 just a coincidence? I donât know if you can see the world, can understand Satoshi Nakamoto?
Dude you donât understand⌠when this project die you will feel stupid.
Grin is not going to redistribute wealth Iâm certain of this, by 2024 I will be worthless.
$0.01 is not that bad. Itâll take ~6 years for GRIN to drop to 10% inflation and ~96 years for 1%.
Iâd be surprised if it stays above $0.001 by the next BTC halvening. There is no reason to hold it, use it or even speculate.
As it stands now, GRIN is slowly dying and becoming irrelevant.
I agree.
But in the meantime, you can still use Grin to transact. And that is the real value prop. Buy Grin, transact, sell Grin.
The better the UX, the more often people will do this.
The more often people will do this, the more they will just keep their money in Grin out of convenience.
The more they keep their money in Grin, the more the price rises.
I have said this before, but itâs really all about the UX. And that is improving.