What Is KYC and Why Does It Matter For Crypto?

KYC measures are now a must for any crypto platform looking to offer services in jurisdictions like the U.S., Australia and the U.K. as regulators clamp down on anonymous crypto transactions.
Updated May 11, 2023 at 6:04 p.m. UTC

As the cryptocurrency industry grows and matures, global and national financial regulators are putting more pressure on firms that offer digital asset services to comply with the same rules as traditional banks. While there is an on-going debate about the balance between privacy and security, proper know-your-customer (KYC) measures help to prevent the illegal use of cryptocurrencies.

What is KYC?

KYC means "know your customer." It refers to a financial institution’s obligation to carry out certain identity and background checks on its clients before allowing them to use its product or platform. It is part of a broader set of measures that regulators around the world use to fight money laundering.

In other words, it stops bad actors from hiding the illicit source of their money behind legitimate financial activity.

KYC clashes with crypto exchanges

KYC is one of the biggest regulatory hurdles that crypto firms have had to clear in recent years. By its nature, the decentralized economy is prone to problems regarding KYC. Many decentralized services are designed to allow customers to remain anonymous and keep their personal information private from any central authority. This means many crypto firms are not able to identify who their customers actually are; something regulators do not find acceptable.

Even the most reluctant crypto firms have been compelled to introduce steadily more stringent KYC measures, as they face growing pressure and penalization from regulators.

  • Crypto exchange Binance announced in August 2021 that new customers would have to provide a government-issued ID and pass facial verification in order to make deposits and trades. This followed announcements by U.K. and Japanese regulators that Binance was not authorized to operate in their countries, among other admonitions.
  • Crypto derivatives exchange BitMEX made a similar move to comply with KYC a year earlier, requiring information on trading experience as well as identification, partly to “get ahead of evolving regulation.” Users had formerly only needed to provide an email address.

Despite these efforts, federal prosecutors still chose to charge BitMEX with a variety of regulatory violations in late 2020, including lacking effective KYC safeguards. The following year, the company said all its users had been verified, before announcing a $100 million settlement with regulators.

KYC requirements do not apply to decentralized exchanges (DEXs), meaning those that organize trades through smart contracts instead of a central trading desk are not required to disclose their identities. The institutions that create DEX dodge the regulations because they are not financial intermediaries or counterparties. Their users trade directly with one another by leveraging the infrastructure provided by the DEX.

ShapeShift's CEO said it lost 95% of its users as a result of the KYC measures it was forced to implement. The changes requiring customers to reveal their identities began in 2018 shortly before The Wall Street Journal alleged the exchange had been widely used to launder money – which the company denied. In a bid to shrug off KYC requirements, ShapeShift pivoted business models and relaunched as a DEX in 2021.

Crypto firms go overseas for lax KYC rules

Some crypto exchanges avoid KYC requirements by domiciling in softer regulatory environments. Blockchain analysis firm CipherTrace has reported that as many as half of the exchanges registered in Seychelles have poor KYC measures in place. In 2020, the FBI claimed one defendant in the BitMEX case admitted it only cost “a coconut” to bribe Seychelles authorities.

Media attention and U.S. pressure can encourage those jurisdictions to toughen their stances. A senior figure in the Seychelles Financial Services Authority said “there’s going to be a tightening up now” in the aftermath of the BitMEX case.

Why does crypto need KYC?

Enforcing KYC compliance could help to tackle malicious activity adjacent to the crypto space, such as ransomware attacks that block a user’s access to a computer or network until payment is made. In 2020, victims paid nearly $350 million in crypto to attackers, who leveraged the anonymity provided by decentralized cryptocurrencies to evade detection.

A 2021 report by the Ransomware Task Force, an international grouping of public and private experts, described the crypto sector as enabling this kind of attack and proposed stronger enforcement of existing KYC laws, among other measures.

KYC may also be important in improving crypto’s public image throughout the economy. Stronger compliance, via more robust identification procedures, could help crypto shed its perceived association with money laundering and other criminal enterprises. This, in turn, could encourage wider adoption and investment.

Learning to live with KYC

A number of startups are now specifically devoted to solving KYC problems for crypto firms. ID verification startup Passbase offers apps a tool through which their users can upload a selfie along with their ID for speedy verification. The company has raised $13.5 million in seed and Series A round funding.

Identification startup Burrata, which has also recently raised seed funding, issues "digital identity tokens" to attach to cryptocurrency wallets. This approach can help other crypto firms to avoid storing users’ data themselves, keeping to their decentralized ethic.

These kinds of tools could ease many crypto firms into compliance, but they will not resolve the ideological opposition to ID checks found in some corners of the crypto world.

Further reading from CoinDesk on security

Online safety is paramount in this digital age, especially when investing and storing wealth in crypto assets.

Simply put, crypto custody means securing the private key that proves you own of the funds held within your crypto wallet.

Con artists preying on people looking for love is nothing new, but the latest scams have moved on from asking you to buy gift cards to an array of crypto scams.

This article was originally published on Jan 19, 2022 at 3:33 p.m. UTC


Please note that our privacy policy, terms of use, cookies, and do not sell my personal information has been updated.

The leader in news and information on cryptocurrency, digital assets and the future of money, CoinDesk is a media outlet that strives for the highest journalistic standards and abides by a strict set of editorial policies. CoinDesk is an independent operating subsidiary of Digital Currency Group, which invests in cryptocurrencies and blockchain startups. As part of their compensation, certain CoinDesk employees, including editorial employees, may receive exposure to DCG equity in the form of stock appreciation rights, which vest over a multi-year period. CoinDesk journalists are not allowed to purchase stock outright in DCG.

Author placeholder image

Benedict George is a freelance writer for CoinDesk. He has worked as a reporter on European oil markets since 2019 at Argus Media and his work has appeared in BreakerMag, MoneyWeek and The Sunday Times. He does not hold any cryptocurrency.

Learn more about Consensus 2024, CoinDesk’s longest-running and most influential event that brings together all sides of crypto, blockchain and Web3. Head to consensus.coindesk.com to register and buy your pass now.

Crypto Terms
backgroundCrypto Flashcards & Glossary
View All