Polygon, a prominent scaling solution for Ethereum, is currently navigating a wave of scrutiny regarding its security architecture and governance model. The network, widely adopted for its ability to facilitate fast and low-fee transactions as an alternative to directly transacting on the Ethereum mainnet (L1), has come under fire from prominent figures within the cryptocurrency community. At the heart of the controversy lies the security of its smart contract multisignature (multisig) contract, which reportedly controls a significant portion of user funds and administrative privileges.
Initially lauded for its innovative approach to scaling, Polygon (MATIC) operates as an Ethereum Virtual Machine (EVM) compatible blockchain, often described as a sidechain. Beyond its sidechain capabilities, the Polygon team has also demonstrably invested in pure Layer-2 scaling technologies, including the zk-STARKs-based Miden scaling solution, signaling a commitment to diverse blockchain scaling strategies. However, with this growing popularity and the substantial influx of user capital, the responsibility to safeguard these assets has become paramount.
The recent surge in critical commentary originated from Justin Bons, Founder & CIO of Cyber Capital. In a series of widely circulated tweets on February 12, 2022, Bons leveled serious accusations against the Polygon team, asserting that the network’s current state is both “insecure & centralized.” His primary concern centers on the Polygon smart contract multisig contract, which he claims manages the Polygon smart contract admin key. This key, in turn, allegedly grants control over assets exceeding $5 billion, according to Bons’ analysis.
The Multisignature Mechanism Under Fire
Bons elaborated on his concerns, detailing the mechanics of the multisig contract. He stated, “The Polygon smart contract admin key is controlled by a five out of eight multi-signature contract. This means that the Polygon [team] can gain complete control over Polygon with only one of the four outside parties conspiring. The other four parties in the multisig were also selected by Polygon.” This arrangement, according to Bons, suggests a significant concentration of power and potential for a coordinated takeover.
The implication of this structure is that a relatively small number of individuals, specifically five out of eight designated signatories, could potentially enact significant changes or even illicitly transfer funds. Bons further posited that the four external parties included in the multisig are not necessarily impartial, as they were initially selected by the Polygon team. This raises questions about their independence and potential susceptibility to influence. The ability to control the contract admin key, Bons argued, equates to the power to alter the network’s foundational rules, making “anything possible,” including the complete depletion of funds held within the Polygon contract.
This critique is not entirely novel. Polygon has faced accusations of lacking transparency in the past. Chris Blec of DeFi Watch had previously sent a formal request to the Polygon team seeking clarification on their operational procedures and security measures. According to both Bons and Blec, Polygon did not provide a substantive response to Blec’s inquiry, further fueling the perception of opaqueness surrounding the project’s internal workings.
Polygon’s Response and Defense
The Polygon team, however, has not remained entirely silent on such matters. In response to the mounting concerns, particularly those articulated by Justin Bons, Mihailo Bjelic, a co-founder of Polygon, indirectly addressed the criticisms on February 14, 2022. Bjelic confirmed that the team is actively “working towards removing them [multisigs],” acknowledging that the current multisig implementation was a product of the network’s “early phase” of development.
Bjelic’s statement, disseminated through a Twitter thread, aimed to provide context and reassurance. He asserted that multisigs were implemented as a security measure, not a vulnerability, and are commonly employed by nearly all scaling and bridging projects during their nascent stages. He pointed to a previously published multisig transparency report by the Polygon team, which detailed their strategy for enhancing and eventually phasing out multisig controls.
“They [multisigs] are considered the optimal approach to secure user funds in the early phases of development and are used by almost every scaling and bridging project,” Bjelic explained. He reiterated that the multisig was designed to protect user funds and that Polygon’s utilization of it was a responsible measure, contrary to Bons’ assertions of recklessness.
Regarding the specific concern about an "exit scam" or a coordinated hack, Bjelic stated, "Exit scam is not a realistic concern for Polygon." He emphasized that the multisig mechanism is in place to safeguard users against external threats and that Polygon is employing it responsibly.
Bons’ critique of the five-out-of-eight multisig as “wholly insufficient” for safeguarding $5 billion in funds and the inclusion of four Polygon-selected external parties was also addressed by Bjelic. He countered that the external parties are “reputable Ethereum/Polygon projects and were not selected by Polygon, they decided to participate.” Bjelic further explained the delicate balance involved in multisig configurations: “The more signers, the harder it is to coordinate them in case an immediate reaction is required. We are trying to find the right balance here; we already have more signers than most of the other scaling projects.”
Broader Implications and Proposed Solutions
The debate highlights a fundamental tension within the blockchain space: the trade-off between decentralization, security, and operational efficiency. While multisigs can provide a crucial layer of security during a project’s early, less decentralized stages, their continued reliance on a limited set of signatories can raise concerns about centralization and potential single points of failure.
Justin Bons, in his critique, also offered a roadmap for Polygon to enhance its decentralization and security. He proposed that Polygon should decentralize its governance structure, empowering MATIC token holders. Currently, Bons argues, the network operates on a Delegated Proof of Stake (DPoS) model with a relatively small number of validators. Data from Polygonscan, for instance, indicated that in the seven days preceding February 12, 2022, only four validators were responsible for mining a majority of the blocks. This concentration of validation power further supports Bons’ centralization concerns.
Bons’ proposed solution involves transferring the smart contract admin key to the MATIC token holders, effectively establishing a "MATIC DAO" (Decentralized Autonomous Organization) with control over critical administrative functions. This transition would likely necessitate a migration to a new Polygon smart contract, a process Bons acknowledges would be “very difficult and costly.” However, he frames this as an unavoidable cost of achieving true decentralization and security, which he considers the core ethos of cryptocurrency.
Mihailo Bjelic, in his response, acknowledged that Bons’ suggested solution aligns with Polygon’s long-term goals, as outlined in their transparency report. He indicated that the gradual implementation and activation of such measures are planned. However, he also noted that a fully decentralized governance model could potentially increase reaction times in the event of critical bugs or exploits, suggesting a need for careful, phased implementation.
The ongoing discussion underscores the critical importance of robust security protocols and transparent governance in the rapidly evolving cryptocurrency landscape. As Polygon continues to grow in prominence, addressing these security and decentralization concerns will be vital for maintaining user trust and ensuring the long-term viability of the network. The project’s stated commitment to evolving its governance model, coupled with the community’s vigilance, suggests a dynamic period ahead for the popular Ethereum scaling solution.
CryptoSlate reached out to Polygon for further comment at the time of reporting but had not received a response. The nuances of these statements and the underlying technicalities of multisig contracts are critical for developers, investors, and users to understand as they navigate the complexities of blockchain security. The future trajectory of Polygon’s governance and security framework will undoubtedly be a closely watched development within the broader cryptocurrency ecosystem.








