Bitcoin developers are locked in a fierce debate over how to defend the network against future quantum computing threats. While the controversial BIP-361 proposal co-authored by Jameson Lopp advocates for a mandatory, phased freeze of vulnerable legacy addresses holding over 34% of all Bitcoin, critics condemn it as authoritarian confiscation. In response, BitMEX Research has proposed a gentler 'canary fund' alternative that triggers a soft fork freeze only after a quantum breach is proven on-chain via a bounty address, though critics warn this relies dangerously on an attacker choosing a bounty over a massive heist.
BIP-361 quantum migration proposal
- ▪BIP-361 remains in draft status with no set activation timeline and depends on BIP-360, a separate quantum-resistant transaction framework still under review.
- ▪BIP-361 proposes a three-phase timeline that blocks inflows to vulnerable legacy addresses roughly three years after activation and invalidates all legacy signatures to freeze unmigrated coins two years later.
- ▪Jameson Lopp and five other developers co-authored and updated Bitcoin Improvement Proposal 361, which outlines a plan to migrate the network away from legacy signature schemes to quantum-resistant alternatives.
Quantum computing threat to Bitcoin
- ▪Over 34% of all Bitcoin in circulation has an exposed public key on-chain, making those funds theoretically vulnerable to theft by a sufficiently powerful quantum computer.
- ▪A Google research paper published in March 2026 outlined a timeline to transition its infrastructure to post-quantum cryptography by 2029, indicating quantum threats may emerge sooner than expected.
Mandatory coin freeze controversy
- ▪Critics of BIP-361 argue that a developer-imposed mandatory coin freeze is authoritarian and confiscatory, violating the foundational principle that no external party can restrict access to funds.
- ▪BitMEX Research proposed an alternative 'canary fund' system that uses a bounty-driven tripwire address to trigger a soft fork and freeze vulnerable legacy wallets only after a quantum attack is proven on-chain.
Developer reactions to proposal
- ▪Phil Geiger pointed out that freezing assets first to prevent them from being stolen is logically absurd because it grants developers authority over users.
- ▪Jameson Lopp acknowledged that he does not like his own BIP-361 proposal, describing it as a rough sketch and a contingency plan he wrote because he disliked the alternative even less.
Bitcoin governance challenges
- ▪The real question facing Bitcoin developers is whether the decentralized community can reach consensus on any quantum security solution before the threat materializes.
- ▪Enrico Rubboli stated that Bitcoin's decentralized governance is a strength in normal times but a weakness when racing a clock, as voluntary migration without a hard deadline assumes the threat arrives on a schedule.
Upgrade implementation risks
- ▪The BitMEX canary proposal relies on a risky structural assumption that a quantum-capable actor would choose a bounty payout over executing one of the largest thefts in financial history.
- ▪An unprotected chain's price could collapse the moment a single quantum theft is demonstrated because it proves every exposed address is fair game.
Story comments
Loading comments…