Wallets & Custody

Your Coins Were Never Yours: A Field Guide to How Exchanges Die

There is a sentence buried in almost every centralized exchange's terms of service. It does not announce itself. It sits between the arbitration clauses and the jurisdiction language, and it says, in effect, that the assets you deposit become a liability on the company's balance sheet.…

IgnizIgniz Research
7 min read
Cover image for the article "Your Coins Were Never Yours: A Field Guide to How Exchanges Die"

There is a sentence buried in almost every centralized exchange's terms of service. It does not announce itself. It sits between the arbitration clauses and the jurisdiction language, and it says, in effect, that the assets you deposit become a liability on the company's balance sheet. Not your property. A liability they owe you. The same legal category as money a bank owes a depositor, except without the bank's regulators, the bank's insurance, or the bank's three hundred years of accumulated rules.

Most people never read that sentence. They find out what it means later, usually at 3am, refreshing a withdrawal page that no longer loads.

The pattern is older than crypto

Strip away the blockchains and the token tickers, and an exchange collapse is just a bank run wearing new clothes. The mechanism has not changed since the Medici. A custodian holds other people's money. The custodian quietly lends, gambles, or loses a portion of it, betting that not everyone will ask for their funds at once. For a while, the bet pays. Deposits flow in faster than withdrawals flow out, and the hole stays hidden under the surface.

Then something cracks. A rumor. A larger competitor calling in a debt. A single large withdrawal that does not clear fast enough. Confidence is the only thing holding the structure up, and confidence evaporates faster than any spreadsheet can track. Within hours, the withdrawal queue is longer than the reserves can cover, and the custodian does the only thing left to do. It freezes the doors.

What makes crypto different is the speed and the finality. A traditional bank run unfolds over days, with central banks standing by to inject liquidity. A crypto exchange run can drain visible reserves in a single afternoon, and no lender of last resort is coming. When the doors close, they often stay closed.

Anatomy of a freeze

If you want to recognize the next one before it happens, learn the sequence. It rhymes every time.

First comes the reassurance. Funds are safe. We are fully backed. There is no cause for concern. This statement is almost always issued by an entity that, at that exact moment, cannot actually honor full withdrawals. The reassurance is not a lie in the obvious sense. It is a prayer dressed as a fact, a hope that confidence will return before the math is tested.

Second comes the friction. Withdrawals slow down. Limits appear that were not there yesterday. Support tickets go unanswered. A maintenance window gets extended. Each individual delay has a plausible explanation, and that plausibility is exactly what keeps people from acting while action is still possible.

Third comes the pause. Withdrawals are temporarily suspended to ensure orderly processing. The word temporarily is doing enormous work in that sentence, and it is usually false. By the time withdrawals are paused, the decision has already been made by reality. The exchange is simply the last to admit it.

Fourth comes the restructuring language. Words like insolvency, bankruptcy protection, and creditor begin to appear. This is the moment the relationship is renamed. You were a user. Now you are an unsecured creditor, standing in a line that stretches behind banks, lawyers, employees, and tax authorities. Your position in that line is poor, and the wait is measured in years.

The clever lies that precede the fall

Collapses are rarely announced by villains twirling mustaches. They are preceded by a vocabulary designed to sound responsible.

Proof of reserves became fashionable as a trust signal, and on its surface it sounds airtight. The exchange publishes cryptographic evidence that it holds the coins it claims. The problem is that reserves are only one side of the ledger. Showing what you hold means nothing if you do not also show what you owe. An entity can prove it controls a billion dollars in assets while quietly carrying two billion in liabilities. Proof of reserves without proof of liabilities is a photograph of a full wallet taken moments before the bills arrive.

Then there is the appeal to size and reputation. Too big to fail is a phrase that has preceded some of the largest failures in financial history. Scale is not safety. Scale often means the custodian has more rope, more counterparties, and more ways for a single bad bet to cascade. The biggest names have fallen the hardest, precisely because their size convinced everyone, including themselves, that the normal rules were suspended.

And there is the yield trap. An exchange offers returns on deposits that are noticeably higher than anywhere else. People treat the high yield as generosity. It is closer to a confession. Outsized yield on a deposit means your funds are not sitting safely in custody. They are being deployed, lent, leveraged, or staked into something risky enough to generate that return. The yield is the sound of your assets being put to work somewhere you cannot see and cannot stop.

What self-custody actually changes

The phrase not your keys, not your coins gets repeated so often it has worn smooth, and worn phrases stop transmitting meaning. So here is the meaning, restated plainly.

A blockchain does not track your name. It tracks control. Whoever holds the private key associated with an address has the power to move what sits at that address, and nobody else does, including the people who built the chain. When you leave coins on an exchange, the exchange holds the key. You hold a number on a screen that represents a promise. The coins on the chain are controlled by the exchange's key, and your screen balance is just the exchange telling you how much of that pile it considers yours.

Self-custody collapses the gap between the promise and the asset. You hold the key. The control and the ownership become the same thing again, the way physical cash in your own pocket is both owned and controlled by you simultaneously. There is no withdrawal queue to a wallet you already control. There is no maintenance window. There is no terms of service clause that quietly converts your property into someone else's liability. The freeze that ends every exchange story cannot reach an address whose key never left your hands.

This is not a small technical preference. It is the entire reason the technology was built. The original design of permissionless blockchains was a direct response to having to trust custodians who could fail, freeze, or betray you. Leaving your assets on a centralized exchange recreates the exact problem the chain was invented to solve. It is using a trustless system to manufacture trust in a single fragile counterparty.

The honest tradeoff

Self-custody is not free of cost, and pretending otherwise is its own kind of slop. When you hold your own keys, you also hold your own consequences. There is no support line to recover a lost seed phrase. There is no fraud department to reverse a transaction you sent to the wrong address. The responsibility that an exchange used to absorb now lands on you.

This is real, and it is the actual decision in front of every holder. The choice is not between risk and safety. It is between two different kinds of risk. With an exchange, you outsource the responsibility and accept counterparty risk, the chance that the custodian fails and takes your funds down with it. With self-custody, you keep the responsibility and accept operational risk, the chance that you make a mistake nobody can fix.

The difference that matters is this. Counterparty risk is largely outside your control. You cannot audit the exchange's secret liabilities, you cannot see its leverage, and you find out it was insolvent at the same moment everyone else does. Operational risk is almost entirely within your control. You can write the seed phrase down correctly. You can verify the address before sending. You can build habits that shrink the risk to near zero. One risk you manage with diligence. The other you manage with hope. Diligence is the better bet.

How to start without theatrics

The intimidation around self-custody is mostly manufactured by the complexity of bad explanations. The core practice is simple.

Generate a wallet where you, and only you, see the recovery phrase. Write that phrase down on something physical, never a photo, never a cloud note, never a screenshot. Store it somewhere a flood or a fire would not reach all copies at once. Send a small test amount first, confirm it arrives, and only then move the rest. Verify every receiving address by checking more than just the first and last characters, because the patterns that intercept transactions are built to fool a lazy glance.

That is the foundation. Everything beyond it, hardware devices, multisignature setups, geographic distribution of backups, is refinement, not prerequisite. The person who does the simple version correctly is already safer than the person who left everything on a platform promising it would never freeze.

The line worth remembering

Every exchange that ever froze withdrawals once promised it never would. The promise costs nothing to make and means nothing once tested. The only assurance that survives contact with a crisis is the one written into the chain itself, the key in your possession that no announcement, no restructuring, and no temporarily suspended notice can override.

Your coins are either a promise someone makes to you, or a fact you control. The whole point of this technology was to let you choose the second one. The choice is still yours, right up until the moment the doors close. After that, it belongs to a bankruptcy court.

Hold your own keys.

Cover image for the article "Hardware Wallets vs. Software Wallets: The Tradeoff Nobody Explains Honestly"
Wallets & Custody

Hardware Wallets vs. Software Wallets: The Tradeoff Nobody Explains Honestly

Every wallet guide on the internet ends the same way. Hardware good, software risky, buy the metal box, the end. It is advice shaped like a conclusion, and it skips the only part that matters: what you are actually trading away when you choose one over the other. Because security is never free.…

Igniz

Stay up to date with Igniz and the future of trading.