As if there weren’t enough misery in the crypto markets at the moment, DeFi enthusiasts are now in an uproar over revelations that Uniswap, the popular decentralized exchange (DEX), tracks public user data.
True, the exchange doesn’t track personal, private data like names or IP addresses, but according to newly-uploaded terms and conditions documents, pretty much anything publicly viewable online is aggregated and harvested. And it’s not alone; earlier this week, Metamask, the popular Ethereum wallet, fessed up to tracking users’ IP addresses.
That user data, it says, is gathered in order to “improve the user experience” of the DEX.
And to whom does it supply this data?
Only service providers, law enforcement, courts (in compliance with a warrant), brokerages, and M&A lawyers, to name a few entities. Basically, anyone and everyone who might be in any way tangentially involved with Uniswap Labs, the legal entity behind the exchange.
The kicker is that it’s been doing this for years, seemingly! But it’s only telling the users now.
And oh, how those users are scandalized.
“Is decentralization a MYTH?” one DeFi degen squealed on Crypto Twitter, where I source all my stories without exception.
Other apocalyptic quotations abound—just type “Uniswap user data TREASON” into Twitter search.
To a degree, the FUD is not entirely unjustified.
“The core ethos of DeFi is fading and often long gone,” the researcher mourned. “It’s an empty facade.”
To many in DeFi, Uniswap’s T&Cs are an unwelcome introduction into DeFi of data-harvesting, Web2 sensibilities.
The user data in question is tracked via the Uniswap website, whose back end is closed to the public and is administered by a small group of developers working for Uniswap Labs, the company which develops the exchange—that is, the underlying protocol that exists on the blockchain.
This group, which was awarded 40% of the proceeds of Uniswap’s original token mint, will, after a four-year vesting period, have increased influence over the governance mechanism of the exchange.
Hoping to add opt-out of analytics setting soon for people who want to be excluded from tracking of the non-personally identifiable stuff that we use for improving our product (stuff like iOS vs android)
In the meantime, you can do this already with an adblocker..
— hayden.eth 🦄 (@haydenzadams) November 24, 2022
As noted by radical decentralization enthusiast Chris Blec, the Uniswap team, once a squadron of hardline, anti-establishment coders, has been overrun by old-world old guard.
Among its ranks are executives from the NYSE, BlackRock, and data-tracking firm Chainalysis, as well as a former Obama spokesman and a Federal Reserve economist. Not the sorts you’d expect to run a cypherpunk trading hub! I remember the heady days of genuinely decentralized platforms like Augur, where absolutely nobody involved in the platform would ever admit any degree of centralized control. (Which, it could be argued, is why those platforms never really took off.)
A funny tweet from way back springs to mind. It was ironic, but nevertheless captured the prevailing spirit of the time: “No one ‘runs’ a crypto firm…we are merely the mortal agents through whose minor works the dream of disaggregated ledger currency manifests on this most unworthy of Prime Material Planes.”
Now, these protocols have in-house PR.
There is, maybe, some legal justification. We’re now in a brave new world where crypto developers can be detained at the whim of governments, as happened to a developer of the privacy platform Tornado Cash in the Netherlands. Just this week, Dutch authorities ruled that the developer in question should remain behind bars for another three months before his trial begins, labelling him a flight risk.
Though Uniswap itself may now have transcended mere legal jurisdiction, existing merely as a blanket of digital mist dispersed across time and space, the exchange’s mostly American developers are still of this mortal plane. (Uniswap Labs didn’t confirm or deny whether the recent arrests in the DeFi world spurred its decision to publicize the data policy).
The truth is that beyond pure protocols like Bitcoin, any kind of accessible interface through which normal, non-cryptographers can access these platforms is generally run by a human core with some degree of centralized influence.
Maybe updates to the HTML should be put to the vote and ratified by every DAO community member; maybe each minor change should go through GitHub, first. My good friend Yoda believes literally everything should be left to the community but “the bare minimum to operate in a jurisdiction zone.” Anything beyond that is financially motivated, they argued.
But if true decentralization requires disintermediating the web design too, and leaving it to a distributed cohort of cypherpunk dilettantes, we’re going to be in for some truly horrifying 1990s-era aesthetics in DeFi sitecraft. And I’m not sure my modem can take it.
Stay on top of crypto news, get daily updates in your inbox.
This article has been originally published at: https://decrypt.co/115549/is-wrong-defi-projects-track-data