Trust at Scale: The Economic Limits of Cryptocurrencies and Blockchains

Eric Budish
DOI: https://doi.org/10.1093/qje/qjae033
IF: 19.013
2024-10-18
The Quarterly Journal of Economics
Abstract:Satoshi Nakamoto (2008) invented a new kind of economic system that does not need the support of government or rule of law. Trust and security instead arise from a combination of cryptography and economic incentives, all in a completely anonymous and decentralized system. This paper shows that Nakamoto's novel form of trust, while undeniably ingenious, is deeply economically limited. The core argument is three equations. A zero-profits condition on the quantity of honest blockchain "trust support" (work, stake, etc.) and an incentive compatibility condition on the system's security against majority attack (the Achilles' heel of all forms of permissionless consensus) together imply an equilibrium constraint, which says that the "flow" cost of blockchain trust has to be large at all times relative to the benefits of attacking the system. This is extremely expensive relative to traditional forms of trust, and moreover scales linearly with the value of attack. In scenarios that represent Nakamoto trust becoming a more significant part of the global financial system, the cost of trust would exceed global GDP. Nakamoto trust would become more attractive if an attacker lost the stock value of their capital in addition to paying the flow cost of attack, but this requires either collapse of the system (hardly reassuring) or external support from rule of law. The key difference between Nakamoto trust and traditional trust grounded in rule of law and complementary sources, such as reputations, relationships, and collateral, is economies of scale: society or a firm pays a fixed cost to enjoy trust over a large quantity of economic activity at low or zero marginal cost.
economics
What problem does this paper attempt to address?