LayerZero: The Language of the Omnnichain
Welcome to the 200 newly Not Boring people who have joined us since last week! If you haven’t subscribed, join 217,532 smart, curious folks by subscribing here: Hi friends 👋, Happy Thursday! Crypto, pronounced dead in 2022, has come back to life. If you’ve been reading Not Boring through that period, you would have known that it would come back eventually. But just because token prices are back up doesn’t mean that crypto is anywhere close to doing the things that I think it will be able to do. Better infrastructure will need to translate into better applications, which will demand better infrastructure, and on and on. It’s a never-ending project. LayerZero Labs is building foundational infrastructure for crypto all the way at the foundation… LayerZero. It’s an omnichain messaging protocol, a transport layer that allows applications to send messages containing bytes of information from one chain to another. If it succeeds, each blockchain will be like a node in one larger, more performant network. Today, it’s rolling out v2 of its protocol. I got an early look, and I’m excited to explain what it is and why I think it’s going to be important. Apologies for the late send — v2 is hot off the presses. This essay is a Sponsored Deep Dive. While the piece is sponsored, these are all my real and genuine views. I haven’t written as many of them this year as I have before because I’m only writing them on companies that I think have a chance to be really important in an area I care about, and LayerZero Labs fits that bill. I’ve been a fan of LayerZero since I had LayerZero Labs CEO Bryan Pellegrino on Not Boring Founders in early 2022, and I’m impressed with the improvements they’ve made in v2 and the potential of the business model. You can read more about how I choose which companies to do deep dives on, and how I write them here. As always, please, please for the love of God note that this is not investment advice. LayerZero doesn’t have a token, but it will at some point. When that time comes: please do not look back at this piece as investment advice. If you’re reading this from that future time, please note the following: I am a terrible trader. This is a sponsored piece. a16z, where I’m an advisor, is an investor in LayerZero Labs. I have no idea where ZRO will be priced when trading starts. I just think it’s important infrastructure for crypto, and that crypto infrastructure is important. Let’s get to it. LayerZero: The Language of the OmnichainIn the beginning, there was Bitcoin. Bitcoin did one thing well. “A purely peer-to-peer version of electronic cash would allow online payments to be sent directly from one party to another without going through a financial institution.” Soon, however, people wanted to do other things peer-to-peer without going through institutions. Enter Ethereum. Ethereum was designed to do many things. “What Ethereum intends to provide is a blockchain with a built-in fully fledged Turing-complete programming language that can be used to create ‘contracts’ that can be used to encode arbitrary state transition functions.” With Ethereum, developers could theoretically build all sorts of things on blockchains: decentralized applications, domain names, exchanges, lending protocols, NFTs, DAOs. Turing-complete means that, theoretically, they could build anything onchain. The challenge was, when they tried to build those things in practice, it was slow and expensive. When users used those things, it jammed up the system and drove up costs. So two things happened. First, right around 2018, a tsunami of new “Layer 1” blockchains emerged to either take Ethereum on directly or to focus on doing a specific thing better than the more general Ethereum could. Second, a number of founders built Layer 2 (L2) chains that handle the execution of a lot of transactions faster and more cheaply and settle them in batches on Ethereum. Each L1 and L2 – the serious ones, at least – attempts to improve on Ethereum in one or more ways. They might be faster, cheaper, more scalable, more private, or more custom-built for specific use cases, from DeFi to payments to NFTs. If you think that sounds confusing, imagine what it feels like for a user trying to figure out where to do things onchain. Worse, imagine what it’s like for a developer trying to figure out which chain to build on! If you want to build an application that uses crypto, there’s all sorts of complexity and trade-offs you have to make. Do you want to build something that’s cheaper and faster? Cool, if you do, it might be less secure and there may be fewer users and less liquidity on that faster, cheaper chain. All told, there are hundreds of Layer 1s and Layer 2s. Each makes different trade-offs, each has strengths and weaknesses. And each, for all intents and purposes, operates in a silo. If you view each blockchain as its own competing network, it’s a messy state of affairs: confusing for users, brutal for developers, and results in fragmented user bases and liquidity. I don’t think that’s the right way to view blockchains though. In May 2021’s Own The Internet, I wrote:
I think the right way to view blockchains is as nodes in one larger Omnichain network. In that view, competitors become complements. Each chain can focus on doing one thing really, really well. As more chains enter the fray, instead of becoming more confusing and fragmented, the Omnichain becomes more capable. It’s a nice idea, if you just assume that all the chains can easily interoperate. But they don’t. Go try bridging tokens from one chain to another if you don’t believe me. Blockchains don’t natively communicate with each other; many don’t even speak the same language. What’s needed in this world is a way for all of these nodes to speak with each other swiftly and securely. What’s needed is a common language for the Omnichain. That’s what LayerZero Labs is building. LayerZero Labs is the company developing the LayerZero protocol, an open-source messaging protocol that allows developers to build omnichain, interoperable applications. Messaging here doesn’t mean SMS – it means sending any arbitrary packet of bytes from one chain to another, so that a smart contract on Chain A can tell a smart contract on Chain B to do something. Note: I’ll use LayerZero Labs when referring to the company and LayerZero when referring to the protocol. At its simplest, it means that developers can build products that interoperate with more chains to reach more users, and that those users can more easily move value from chain-to-chain. At its wildest, it means that developers can choose to build products that use different chains for different features, and that users never have to think about which chain they’re on. Bryan Pellegrino, Ryan Zarick, and Caleb Banister founded the company almost accidentally in 2021 when the long-time friends and multiple-time co-founders caught wind of Binance Smart Chain’s (BSC) growing popularity and tried to build a game that worked across BSC and Ethereum. They were horrified with the state of bridges – which have since been hacked for at least $2.5 billion – and attracted to the very hard problem of building foundational infrastructure for crypto. They made a bet that blockchains would behave more like nodes in a larger network than as their own competing networks, and that if that were the case, there would need to be a TCP/IP for blockchains. Just as TCP/IP enabled the internet by allowing different computers running different operating systems on different networks to communicate with each other, LayerZero allows smart contracts operating on different blockchains to communicate with each other. It’s core crypto infrastructure, operating a layer below everything else, hence… LayerZero. While there are other messaging protocols on the market, including Wormhole and Axelar, LayerZero is a pure transport layer that allows applications to choose their own entities to verify and execute messages; the others compete as verification layers themselves. To build at that layer, LayerZero Labs believes, you need a protocol that is immutable, censorship-resistant, and permissionless. The team’s bet on TCP/IP for an omnichain future seems more in the money with every new chain launched. In February of this year, in the middle of Crypto Winter, LayerZero Labs raised a $120 million Series B from a16z crypto (where I’m an advisor), Sequoia, and a host of other funds at a $3 billion valuation. It’s handled over 87 million messages and $40 billion across more than 50 chains in under two years since launching, far more than any competitor, without a single dollar lost. I first met Bryan in April 2022 when he came on the Not Boring Founders podcast. A few weeks ago, he emailed me to ask if I wanted a sneak peek at the v2 they’d been working on for the past 18 months and maybe even to write a deep dive – “If you're into it would obviously be no bias / write whatever you'd like, would love to explore.” I jumped at it. While rising token prices might increase the chance that you read a long deep dive on a crypto company, LayerZero Labs is building the kind of thing that excites me personally whether it’s a bull market or a bear. In the last crypto piece I wrote in November – Blockchains as Platforms – I wrote:
LayerZero makes it easier for developers to choose among the benefits of particular chains when building their products, improving the trade-off calculus. And it operates at a beautiful place in the stack – as any new chain comes online and offers improvements in one area, LayerZero Labs can incorporate it as easily as deploying an endpoint. Just as TCP/IP turned a novel but limited set of local networks into one of humanity’s greatest achievements – the Internet – LayerZero has the potential to do the same for web3, at a time when baking decentralized ownership, governance, and control into the fabric of the web is as important as it’s ever been. LayerZero Labs is my kind of company in a lot of ways:
But LayerZero v1 didn’t make its value proposition as clear as it could have been. Bryan told me that when they launched, the popular Crypto Twitter personality Cobie gave him some good advice: write a refutation article getting ahead of the things that sucked about the practical implementation of LayerZero in its early form. He didn’t. “We just launched and left it at that. The first time, we said, ‘Here’s how everything works,’ but not the why behind the seemingly simple things that we’d spent months debating.” The things they cared most about – immutability, permissionlessness, and censorship-resistance – they viewed and still view as non-negotiable. They’re baked into the architecture. But the other things – like how verification and execution work on the protocol – were meant to be a work-in-progress. After 18 months cooking in the lab, LayerZero Labs is launching its v2 with improved an verification and execution model today. This time, we’ll cover the why as well as the what:
To start, let’s go back to the early days of the very internet on which you’re reading this right now, no matter what computer or operating system you happen to be running. Parallels with TCP/IPI don’t want to lose you with talk of TCP/IP stuff so early in the piece, but if you want to understand LayerZero, there’s no better place to begin. In my research, Perplexity served up a PDF of the first chapter in this 2002 gem: TCP/IP: The Ultimate Protocol Guide by Philip Miller. It begins:
That last sentence is particularly interesting because it was written 28 years after internet godfathers Vince Cerf and Bob Kahn published “A Protocol for Packet Network Interconnection,” in which they first described TCP and its potential to upgrade ARPANet, the predecessor to the internet. When the piece was published, there were 558 million internet users in the world, exactly 10% of the 5.5 billion people who use the internet today. Miller was right that information exchange via the internet would become more widespread, but wrong that more individuals and companies would need to understand TCP/IP. Soon after he published the book, web 2.0 companies built products that abstracted away the complexity of the underlying protocols so that most people and companies never had to think about them. If you want to send an email, you don’t need to know anything about the Simple Mail Transfer Protocol (SMTP). You just open up Gmail. If you want to transfer a file, you don’t need to understand the File Transfer Protocol (FTP). You just drag the little file icon into Dropbox. And if you want to use the internet, you don’t need to understand the first thing about TCP/IP. When I made that graphic a couple of years ago, for my first piece on crypto, The Value Chain of the Open Metaverse, I didn’t think to include TCP/IP because it operates so far from the user, a layer below protocols like HTTP, SMTP, and FTP. But it’s the most critical layer in the stack. Without TCP/IP coordinating the flow of data from one computer to another, there would be no HTTP, SMTP, or FTP. What exactly does TCP/IP do? Miller continues:
My editor/brother Dan hates when I use block quotes, and here I’ve done it twice, and from an old manual on TCP/IP. But I did it for a reason, promise. In both sections, if you find-and-replace “TCP/IP” for “LayerZero,” “computer” for “blockchain,” and specific operating system and company names for blockchains it works almost perfectly! LayerZero is a protocol that enables communication between blockchains. There was a time when it was not important for blockchains to communicate with each other. There was no need for a common protocol. But as blockchains became networked, the need arose for blockchains to agree on certain protocols. Today, a developer can choose from many protocols, but the LayerZero protocol is the most widely used. Part of the reason is that LayerZero is the protocol of choice on the Omnichain–the world’s largest blockchain network. If you want a blockchain to communicate on the Omnichain, it’ll have to use LayerZero. Another reason for LayerZero’s popularity is that it is compatible with almost every blockchain in the world. LayerZero is supported by current versions of (mostly) all of the major blockchains and layer 2’s – including Ethereum, BNB Chain, Aptos, Avalanche, Polygon, Optimism, Arbitrum, and Base. You get the point. LayerZero might be referred to as “the language of the Omnichain.” If TCP/IP was the enabling protocol for the Internet, I think that LayerZero can be the enabling protocol for the Omnichain – a network of blockchains, each leaning into its own points of differentiation. As value exchange via the Omnichain becomes more widespread, most individuals and companies won’t need to understand LayerZero, but smart, curious people like you should anyway. This is one of the hardest and most important problems in crypto, one that, if solved, unlocks a ton of value for everything built on top and makes capitalism flow more efficiently onchain. How LayerZero WorksOK, so how do you build TCP/IP for blockchains? How does LayerZero actually work? What does it do? And if you want to create infrastructure that lasts as long as TCP/IP has, what decisions do you need to make upfront? We’ll need to get a little technical here, but I’ll try to make it as simple as possible for now and then dive into details later. You can think of the LayerZero protocol as a series of pipes that deliver messages between blockchains, transport layer infrastructure that runs below the cities. These are modern, highly technical pipes. If TCP/IP is plumbing, LayerZero is Pipedream. Over time, if everything goes just right, these pipes might be the pipes through which the global economy runs, so the LayerZero Labs team believes that the pipes must have three core characteristics:
If you don’t think about those three things upfront, Bryan told me, “the whole world will be built on rails that are corruptible.” In order to build incorruptible rails that can adapt, extend, and stand the test of time, LayerZero Labs needs to balance security where needed and flexibility where possible. From the beginning, LayerZero Labs (the developer) split LayerZero (the protocol) into components ranging from “completely locked down” to “flexible.” In v2, that split shows up as four components: Endpoints and Validation Libraries are the core of the LayerZero protocol. Endpoints are low surface-area, open source smart contracts that live on each chain and can’t be changed once they’re in place. Validation Libraries are responsible for sending packets from one chain and validating them on the other and define how communication should be handled on each chain. They’re the immutable pipes through which messages flow. Verification and execution of messages are up to the application to decide; they can hook any set of verifiers and any executor they choose into the protocol. Verification provides the security for the messages being sent; some entity or entities verify that each message is legitimate. Execution essentially means paying gas so that smart contracts on each end can process the transaction described in the messages. In v1, verification and execution were provided by Oracles and Relayers. In v2, they’re provided by Decentralized Verifier Networks (DVNs) and Executors. Importantly, in v2, LayerZero Labs has totally decoupled security from execution in order to guarantee censorship-resistance without impacting liveness, or the ability of the protocol to continue functioning and processing transactions without interruption. You don’t want anyone to be able to mess with your messages, and you always want them to go through. Don’t worry. I’ll explain what all of this means in detail. Getting there is going to take a journey through LayerZero’s history, the theory and practice of LayerZero v1, and the why behind the v2 upgrades. What hasn’t changed between v1 and v2 is that endpoints are immutable and validation libraries are append-only. The deepest layers of the protocol remain unchanged, because they were built to be unchangeable from the beginning. Security and execution are still modular and up to the application, too, but what has changed in v2 is exactly how that happens. To understand that, we need to understand why it was harder for applications to choose in practice than it was in theory. LayerZero v1: From Bridges to Oracles and RelayersLayerZero started out as a side project for Bryan, Ryan Zarick, and Caleb Banister. After leaving a successful poker career behind in 2014, Bryan kept his brain spinning on a series of hard projects. He tried bitcoin mining in 2014, built an AI model to measure pitchers’ performance that he sold to MLB teams in 2016, launched a platform to let people launch their own tokens, OpenToken, in 2018, and built the world’s best poker AI, Supremus, with Ryan, Caleb, and Meta AI researcher Noam Brown (the creator of CICERO) in 2020. “All my life, I’ve just liked to work on hard problems,” he told an interviewer for Sequoia. “More than anything else, that’s what attracts me.” Later in 2020, when Binance Smart Chain launched and started to pick up real adoption, a rarity then among non-Bitcoin or Ethereum chains, he got the band back together. Bryan, Ryan, and Caleb built a game in which gladiators fought to the death on the cheaper, faster BSC, the winning gladiator was minted as an NFT, and the NFT was stored on the more secure Ethereum. It was a toy model to test the chains, and the test was fruitful. In the process of moving the NFT from BSC to Ethereum, they hit a problem: bridges. Just as physical bridges connect two landmasses, bridges connect two blockchains. They’re how you send tokens – fungible or NFT – between chains. Because different chains have different ways of doing things, a token that works on one might not work on the other. So if you wanted to send your tokens from say, Ethereum to Polygon, in order to use an app on Polygon, you’d go to a bridge and the bridge would do a few things:
As Bryan, Ryan, and Caleb discovered, though, Bridges have a couple of major problems. First, they’re a security nightmare. All of that locked ETH (or whatever locked token) is a gigantic flashing sign that there’s a pot of money hackers can try to break into. In 2022, hackers exploited the Wormhole Bridge between Solana and Ethereum for $326 million and the Ronin Bridge between Ronin and Ethereum for $624 million. The US Treasury Department alleged that the North Korean hacking group Lazarus was behind the Ronin hack, highlighting that these systems need to be robust against state-level actors. Second, they’re slow, painful, and a little bit scary. Bridging tokens means figuring out how to get the native token of the chain you’re bridging to in order to pay gas fees for that end of the transaction, putting your valuable tokens into a website, signing them away, and then waiting for a painfully long time. More than once, I’ve worried if my tokens were lost forever while I waited. At launch, Bryan did a video comparing LayerZero to bridges that shows how slow bridging can be: So the trio realized that they’d need to go deeper into the stack to solve the problem. They’d need to build foundational infrastructure on top of which bridges could be built. They’d need to build a protocol that would transport arbitrary messages across blockchains. LayerZero was born. By building a messaging protocol instead of a bridge, LayerZero Labs eliminated the idea of locking and wrapping tokens, got rid of the honeypot, bundled a bunch of steps into one message, and removed the need to worry about gas. Chain A sends a message containing bytes to Chain B, and Chain B executes whatever instructions are contained in the bytes. For times when that message contains instructions to transfer tokens, LayerZero Labs introduced the Omnichain Fungible Token (OFT) Standard. According to the docs, “This standard works by burning tokens on the source chain whenever an omnichain transfer is initiated, sending a message via the protocol and delivering a function call to the destination contract to mint the same number of tokens burned, creating a unified supply across both networks.” With OFT, there is no pot of tokens sitting somewhere – tokens are burned on one side and re-minted on the other. LayerZero launched on St. Patrick’s Day, March 17, 2022. Alongside the launch, the LayerZero Founders built a bridge, Stargate, to show it off. (It’s now governed by a DAO.) Stargate uses the LayerZero protocol to move native assets instead of locking and wrapping, and raises an important distinction. LayerZero is the messaging rails that operate underneath liquidity transfers. Bridges, like Stargate, operate on top of LayerZero. Those bridge smart contracts still have locked liquidity in them for non-OFT tokens, and hackers can still target the bridge’s liquidity pools. The more protocols adopt standards like OFT, and the Ethereum community’s similar xERC20, the less opportunity there is for hackers. Since launch day, LayerZero has delivered over 87 million messages, with over 31,000 smart contracts live on Mainnet, and Bryan tells me that over $40 billion has moved through its pipes… all without a hack. LayerZero also allows for messages to be composed across chains. For example, a user could move OFT X from Chain A, swap it on chain B for OFT Y, and then use OFT Y to purchase an NFT on chain B. All of this can be paid for in the source chain’s token and handled in a single transaction from the user’s perspective. Applications can use composability to create magical experiences that abstract away complexity. LayerZero v1 created a new architecture for messaging between chains: a locked down transport layer protocol with modular security and execution on top. The v1 Whitepaper introduced the concepts of immutable endpoints and append-only libraries that are still in place today, but it handled message verification and execution differently than v2 does. Where v2 has DVNs and executors, v1 had Oracles and Relayers. Oracles and Relayers made sense on paper. The Oracle’s job is to fetch block headers – like a summary of each block on the blockchain – from Chain A and send it to Chain B so that each chain can verify the other’s current state and integrity. At launch, Chainlink, a leading oracle, was the most popular option, and in September, LayerZero Labs announced that Google Cloud would become the default Oracle. In theory, applications could choose their Oracle, and Bryan told me the team assumed that someone would make a meta-oracle that combines a number of different oracles – bridges, oracles, and attestation services. In practice, most applications stuck with the default, and no one created a meta-oracle. The Relayer’s job, on the other hand, is to provide the necessary proof that a particular event or transaction happened on Chain A, which Chain B could then act upon. For example, it could say, “Yes, the user approved sending 10 ETH from Ethereum to Polygon, and we, Chain A, have burnt the 10 ETH. Your turn.” Crucially, the Relayer was responsible for both security and execution. It handled things like quoting pricing pairs across 40+ different chains in real-time, sending 50-80 billion RPC calls per month to get information, writing millions of messages to chain, and abstracting gas payments away from the user. In theory, anyone could build and deploy their own Relayer. In practice, Bryan told me, “A Relayer is impossibly hard to run. We had to build an internal custodian, real-time n^2 pricing, write more messages to chain than anyone in the world, and essentially run Alchemy internally.” So no one built Relayers. And because no one built Relayers, LayerZero Labs was a potential chokepoint. If LayerZero Labs’ Relayer went down, the whole network would have a liveness issue – transactions wouldn’t go through – until someone, likely the App itself, came in and picked up transactions. That’s bad from an operational perspective, and it’s equally bad from a censorship-resistance perspective. If the government wanted to temporarily shut down the protocol, all they’d have to do is shut down LayerZero Labs’ Relayer. “It goes against everything we believed in,” he told me. In theory, LayerZero v1 was trustless – developers could plug in the Oracle and Relayer of their choice. In practice, it isn’t, really. It requires trusting Chainlink, Google Cloud, or Polyhedra, a zk light client that essentially inherits security from source chains, and LayerZero Labs itself. That’s a pretty safe bet, especially with the addition of Polyhedra, and fortunately, in terms of security and censorship-resistance, that hasn’t been an issue yet. LayerZero hasn’t been hacked. There haven’t been major liveness issues. LayerZero is the leading messaging protocol by a wide margin. But in the long-term, if you want to build foundational infrastructure that lasts fifty years or more, like TCP/IP has, there can’t be any room for error. And in the short-term, even the perception of potential pitfalls leaves room for confusion and competition. How Interoperability Protocols CompeteTo get widespread adoption and become the TCP/IP for blockchains, LayerZero has to do two things, each of which reinforces the other:
The more chains LayerZero is on, the more compelling the value prop for more apps and protocols. Currently, LayerZero is live on 45+ chains including Ethereum, Optimism, Arbitrum, zkSync, BNB Chain (the successor to BSC), Aptos, Celo, Scroll, Polygon, Avalanche, Fantom, and Base, with more coming soon. The most eagerly anticipated is the darling of this cycle so far: Solana. “Solana is basically done and has been in security check / final stages for a bit,” Bryan told me. It's meaty though so we've been super cautious with it. Security first has meant speed is abysmal in this case, we'll get there.” As LayerZero Labs lays the infrastructure, it also needs to convince developers to use it. This being crypto, that sales process plays out a little differently than it might for a traditional tech company. Exhibit A: Uniswap. In December 2022, Plasma Labs CEO Ilia Maksimenka put forward a proposal in the governance forum of the popular DEX, Uniswap. Ilia believed that Uniswap should deploy its protocol on BNB Chain, “the second-largest blockchain infrastructure by volume and user base.” He proposed that his company, Plasma Labs, deploy the Uniswap protocol to BNB Chain using its Hyperloop protocol, “a generalized cross-chain message-passing protocol inspired by roll-ups.” If you’ve read this far in the post, you might be interested enough in this stuff to find the full forum discussion as fascinating as I did. It’s business development and technical sales, out in the open, with debate among participants and observers, meant to convince a community instead of a single buyer. As the conversation continued over the next month, the community seemed to agree that launching on Binance was a good idea, but weren’t convinced that Hyperloop was the solution. So more bridges and messaging protocols threw their hat in the ring: first deBridge, then Celer, and then, on January 24th, Wormhole. After the $326 million hack in 2022, Wormhole upgraded itself. It shifted its architecture from bridge to cross-chain messaging, spent $2.5 million on bug bounties, and underwent a number of audits. The day after Wormhole entered the fray, LayerZero did too. With Wormhole and LayerZero in the ring, the competition pretty quickly became a choice between these two heavyweights, each backed by heavier-weights. LayerZero was backed by a16z crypto, also an early Uniswap investor and large UNI tokenholder, and Wormhole was backed by high-frequency trading firm and crypto market maker Jump Trading, which incubated the project and which also owns a significant amount of UNI tokens (and therefore votes). Over the next week, there was a lot of back and forth among UNI community members, including university blockchain clubs from Stanford, Penn, Michigan, and Berkeley. The conversation covered a few different topics simultaneously: whether there should even be a vote on a single bridge provider, what the process for decisions like this would be going forward, and whether Uniswap should wait and use a multi-bridge or multi-message aggregation solution. But there was a time constraint. As a16z crypto’s Porter Smith wrote, “Given the expiration of Uniswap V3’s BUSL license in early April, we’re generally in favor of deploying Uni V3 to other chains before that date to avoid the copy-paste rush that will likely ensue otherwise.” So a choice needed to be made quickly, and for the purposes of our discussion, it came down to verification models:
The fact that this is how the battle shaped up was an error in communication on LayerZero Labs’ part, Bryan told me. It became a contest of whose validation set or verification model was more trusted by the market; he wishes they’d made it more clear that LayerZero doesn’t compete at that level, that as a transport and messaging protocol, it’s verification agnostic. If they’d messaged it right, he thinks the choice should have come down to:
But they didn’t message it well, and initially, community members like Kydo from Stanford Blockchain leaned in favor of Wormhole, “because of its diverse validator set.” Kydo was concerned that LayerZero relied heavily on Chainlink’s oracle relay service. LayerZero spoke with Stanford Blockchain and clarified its proposal, recommending that Uniswap switch out Chainlink for a “gasless oracle run by a minimum of 5+ significant Uniswap delegates.” Kydo responded:
There’s an important distinction in there, which Kydo alluded to but didn’t call out specifically: LayerZero and Wormhole are fundamentally different products. LayerZero is solely the transport layer, and Wormhole is also the verification layer. Because of that, Uniswap could swap out Chainlink for its own verifier set. With Wormhole, if you want the pipes, you also need to use its 13-of-19 Guardian model. “We felt like the Uniswap forum was more of a failure on our part to properly message the protocol and the role it plays,” Bryan told me. “They expected us to be a Wormhole or an Axelar and we just fundamentally aren’t.” Despite the miscommunication, the momentum seemed to be shifting towards LayerZero, but when a “Temperature Check” vote among the solutions went live, a16z was unable to vote its 15 million tokens “due to infrastructure limitations with the custodian on short notice,” and Wormhole won the vote. It was an unusual situation: the first and only binding temp check in Uniswap governance history. Typically, the process would move to an official on-chain vote after the temp check. But this time, it didn’t. After the temp check, Uniswap governance moved to a new and final vote: whether to deploy Uniswap on BNB Chain with the protocol that won the temp check, Wormhole, or hold off on deploying. Given the time sensitive nature of the decision, the community voted to deploy with Wormhole. In a follow-up Bridge Assessment Report, the Uniswap DAO assessed a number of providers, including Wormhole and LayerZero. It approved Wormhole “for use in all cross-chain deployments,” but recommended reassessment for LayerZero “based on pending upgrades.” It wrote:
Between the conversation in the BNB Chain governance forum and the Bridge Assessment Report, it seems that the takeaway was this: The immutability of the LayerZero protocol and the potential for applications to choose their own Oracles are both advantages over Wormhole in theory, but in practice, its security model looked too much like a 2-of-2 multisig with Chainlink and LayerZero Labs as the signers. While Wormhole contracts are upgradeable, which introduces risk, and while Wormhole doesn’t allow applications to configure their own validator sets, a 13-of-19 Guardians model appeared to be more decentralized. The thing is… Bryan agrees. LayerZero v1 has been safe and has successfully handled a ton of messages and assets, but in practice, the messaging around Oracles was too confusing, and building a Relayer was too hard, for most projects to move beyond the defaults. So for the past 18 months, the team has been cooking up something new and improved. LayerZero v2Without the background we’ve covered, you might not have been able to recognize the shade in the whitepaper LayerZero Labs dropped today on v2. From the abstract (emphasis mine):
In the whitepaper, LayerZero Labs makes a distinction between crosschain messaging systems, like Wormhole, and omnichain messaging systems, like LayerZero. LayerZero’s architecture is based on the belief that you can’t construct an omnichain messaging system by stringing together a number of crosschain messaging systems. Crosschain messaging systems work well if you’re connecting chains that handle execution and consensus in similar ways, like EVM-compatible chains, they argue, but not if you want to connect chains across different compatibility groups, like connecting Solana and Ethereum. They propose an omnichain messaging protocol (OMP) that leverages “foundational invariants underlying all blockchains to create a chain-agnostic protocol that semantically unites interoperation between onchain contracts, between chains in the same compatibility group, and between different chain groups.” In other words, like TCP/IP created a “language of the Internet,” LayerZero Labs is attempting to create a “language of the Omnichain.” LayerZero Labs writes that an OMP has two responsibilities:
Scalability is simpler and less involved, so we’ll hit it first. It means that the OMP should be able to support any arbitrary new blockchain, security algorithms, or features, now or in the future, and that lower-risk feature extensions should be separated from the security-critical components. This requires one language that works across all blockchains, present and potential, instead of overspecialization based on today’s blockchains and use cases. Specifically, LayerZero uses a “standardized interface for omnichain composition - lzCompose” to allow developers to use the same code to compose contracts regardless of what the destination blockchain is or which language it speaks. If you want to dig in on this, check out section 4.1 in the whitepaper. Intrinsic security is a new framing of the transport layer’s security in v2. This is the security that LayerZero, the protocol, is responsible for: liveness, censorship-resistance, and long-term stability. Applications need to be able to use the protocol anytime, no matter who’s trying to stop it, for a long time. To do that, it’s separating the security the protocol is responsible for from the security that the application and underlying blockchain are responsible for. The intrinsic security, the infrastructure, needs to work reliably and predictably over time, but the extrinsic security needs to be modular and controlled by the application so that it can evolve as technology advances. As better validators or zero-knowledge clients, like Polyhedra, enter the market, applications should be able to plug them in. Applications should also be able to choose how much extrinsic security they need versus how much they’re willing to pay; a DeFi application responsible for billions of dollars and a gaming application responsible for a bunch of $1 NFTs shouldn’t be forced to use the same level of security: such a model would either be too insecure for the DeFi protocol or too expensive for the gaming protocol. The best way to illustrate this point is with the Pareto Frontier. Modular extrinsic security provides benefits on two dimensions: choice and time. In the present, allowing applications to set their own DVNs lets them choose the right point on the cost-security frontier for their specific need instead of locking them into one likely suboptimal point. Over time, the ability to change the DVN allows applications to reap the benefits as technology and competition push out the Pareto Frontier. This is one of the most important changes in v2, and the first that Bryan highlighted when we spoke: instead of Oracles and Relayers, which were good in theory but hard in practice, there are Decentralized Verifier Networks and Executors, which are which are permissionless to run, easier to implement (open sourced examples exist), and endlessly configurable. Now, any external network can be a DVN, and applications can choose any combination of them to approve messages. At launch, Animoca, Blockdaemon, Delegate, Gitcoin, Nethermind, Obol, P2P, StableLab, Switchboard, Tapioca, SuperDuper, Polyhedra, and Google Cloud are confirmed DVN options, and adapters have been built to hook in Axelar and Chainlink’s CCIP. Adapters for other bridges, including Wormhole, are on the roadmap. Application A might choose to go very secure and expensive, and have a 15 of 21 threshold and include Chainlink, Polyhedra, Google Cloud, and even would-be LayerZero competitors like Wormhole and Axelar, plus validate messages themselves. Application B, built on Ethereum and Arbitrum, might go with a 3 of 5 and include the Arbitrum native bridge, Google Cloud, and themselves. A verification model that allows you to plug in Wormhole or Axelar’s validator set as just one of a number of other DVNs is strictly superior to those validator sets alone. Or if you’re say, JP Morgan, which is building its asset management blockchain project, Onyx, with LayerZero, you can choose to grant write access to a 3rd party validation set, or you can deploy one endpoint at JP Morgan, another at Goldman, and “they can verify directly, handshake themselves,” Bryan explained. Applications are responsible for their own extrinsic security, and for selecting an Executor. Instead of Relayers, applications choose their own Executors, which live outside of the security of the protocol. These Executors are mainly responsible for quoting prices and gas and handling all of the complexities of transactions for applications and their users. In exchange, they’ll charge a small fee on top of the cost of gas. LayerZero Labs will run an optional Executor that applications can choose to run, and that will be the default out of the box, but it encourages applications to set up their own configurations. LayerZero Labs will have to compete on price and service. Importantly, Executors are much simpler to run than Relayers, because v2 decouples security and execution, so LayerZero Labs expects there to be strong competition. If needed, applications can even execute easily onchain or users can self-execute. Importantly, v2 also improves liveness. In v1, if the LayerZero Labs Relayer went down, liveness would be compromised. Now, once a message is verified, anyone can execute a transaction on LayerZero Scan or directly onchain. Applications can choose whether to execute them in order – which might be important for a DeFi app – or in whatever way achieves maximum throughput – which you might choose if you’re building a game. If one executor goes down, you can swap in another and the show goes on. All told, LayerZero Labs lays the infrastructure, the things that should never change, and applications are free to choose whatever configurations work best for their needs on top of that (and change those over time). The application’s unique configuration of DVNs and Executors is its Security Stack. In this model, LayerZero Labs doesn’t care what applications choose. They provide the hooks, and with v2, make it as easy as possible to hook them into whatever chain, verifier, or executor the application wants to choose. But they do set defaults… Default RefutationWhile v2 addresses the concerns highlighted in the Uniswap governance forum – it makes LayerZero’s verification and execution more practically decentralized – Bryan told me that he still expects there to be pushback on one thing in particular: defaults. What are defaults? When you start building with LayerZero, it comes with default DVNs, executors, and libraries. They’re proxy contracts that let LayerZero Labs select things on behalf of the application. For example, if you stick with the defaults, then if there’s any issue with, say, a library, LayerZero Labs can automatically switch you to an updated library. If you statically select your configuration, you need to choose to switch yourself. Since v2 is launching to testnet only for now, the defaults haven’t been set. Earlier I said that Cobie suggested writing a refutation ahead of time, calling out the things that suck with the current model that could and should change over time. Bryan told me that he knows that a few vocal critics will be unhappy they’re keeping defaults because they evaluate LayerZero as though defaults were the only option, but that it’s worth the heat because they’re the only way to create a magical developer experience out of the box. But he also said: “If you’re using defaults, you’re fully trusting LayerZero Labs – don’t.” Still, to give developers a good experience, they chose to keep defaults despite the pushback they know they’ll get. He also pointed out that while competitors like to give them pushback on defaults, every other protocol only has defaults. They’re not configurable. “The worst case for LayerZero,” Bryan said, “is the best case for any other messaging protocol, because at least developers always have the choice to change the parameterization.” I asked the team whether the decision to set defaults was consistent with the idea of creating TCP/IP for blockchain. They told me that just as TCP/IP is a standard and your computer comes with all sorts of built-in decisions on the implementation of the standard in order to make it usable, the LayerZero protocol is the standard and defaults are implementation. Defaults don’t impact the protocol itself in any way, shape, or form, they just make it easier to implement. And if you want to build the TCP/IP for blockchains, you need developers to implement it. And one big difference between standards and protocols is that if you can become the TCP/IP for blockchains, that can be a really good business. Protocols that Make MoneyEarlier this month, Union Square Ventures’ Fred Wilson wrote a blog post titled Why Monetize Protocols?
The answer, according to Wilson, “lies in securing the governance of protocols and managing bad actors/applications built on them.” A decentralized protocol is governed by tokenholders. The more valuable the token is, the harder it is for any one entity to acquire a large enough stake to control governance and the easier it is for the token holders to incentivize the kind of behavior they want to see. Monetizing the protocol by charging fees that flow to the treasury should make the token more valuable. Currently, that’s not a concern. LayerZero is owned, operated, and governed by LayerZero Labs. Last week, however, the team announced that there will be a LayerZero token, likely in the first half of 2024. Even after that happens, the LayerZero protocol will always be able to be used without LayerZero’s token – there is no token now and applications can use it, and the endpoint code is immutable. Token holders might, however, use a token to incentivize verifiers, applications, or users to verify, build, and transact on the protocol, or do any number of things that are good for the development and implementation of the protocol. So how will value accrue to that token? To be clear: the team hasn’t said anything about this, either publicly or to me. My last call with Bryan was the day before they announced the token, and when I asked how a token played into everything, he said: “From the scope of the technology, nobody needs to care. We very specifically have not said anything ever to date about a token.” To be double-clear: this is not financial advice. I’m an idiot, I have no idea what the token supply will be, I don’t know what fee amounts the protocol will take on messages. There’s no way to analyze the value of the token with currently available information, and I’m not going to try. With that said, I can appreciate the potential of the business model without taking a view on the token. It seems as if the model is to take a small fee on a whole lot of transactions. Their docs have a section on Estimating Message Fees, with code that lays out three fees: Relayer Fee, Oracle Fee, and LayerZero Fee. The Relayer Fee might contain the price of gas on the sending and receiving chain with a small fee on top, the Oracle fee pays the Oracles for verifying messages, and the LayerZero Fee goes to the protocol. Today, LayerZero Labs earns Relayer Fees where it’s the Relayer and the LayerZero Fee. Presumably, these will be replaced with Verifier Fees, Executor Fees, and LayerZero Fees in v2. Once LayerZero Labs decentralizes governance of the protocols, it’s safe to assume that the Verifier Fees will go to participants in the relevant DVN, Executor Fees will go to the Executor, and LayerZero Fees will go to the protocol’s treasury. These fees likely represent small markups over costs, and as more Verifiers and Executors compete for business, it may drive their margins down. The killer business here over the long-term is the protocol. By operating below and connecting all the chains, LayerZero sits in the flow of funds of the Omnichain. Every time a message moves from one chain to another, it collects a small fee. Over millions and eventually billions of messages, those fees add up. From a product perspective, LayerZero is like TCP/IP. From a business perspective, it’s like VISA. When I ran this analogy by Bryan, he disagreed, pointing out that VISA is a hub and spoke model: it sits in the middle of a global network of banks, merchants, and customers. “It’s low friction,” he agreed, “if you’re willing to take on the assumption that they’re benevolent.” Bryan compared the VISA network to the state of cross-chain messaging when they started building. There’s a middle chain – Cosmos, Axelar, Wormhole, whoever – that listens to events, says “yes/no” to validity, and sends a message. Everyone trusts the middle thing, and if that’s corrupt for even a matter of blocks, it can corrupt everything that touches it. He and the team architected LayerZero precisely to avoid that model, to ensure that applications had a way to send a message from one chain to another without anything in the middle: “We were convinced that model wouldn’t scale.” But while LayerZero’s architecture is different from VISA’s, I still think there are similarities in the business. By allowing a bunch of entities that couldn’t communicate before to communicate, and enabling value to flow among them, it’s in a position to take a very small cut of a very large number of transactions. That’s a good thing. It means that LayerZero Labs, and eventually ZRO token holders, are incentivized to build infrastructure and attract third-parties that increase the flow of value among chains. Ultimately, that means building financial rails that applications and users can trust and access: rails that are immutable, censorship-resistant, and permissionless. If Stripe’s mission is to increase the GDP of the internet, LayerZero’s might be to increase the GDP of the Omnichain. Increasing the GDP of the OmnichainIn the beginning of the piece, I said that LayerZero was my kind of company in a lot of ways. It’s a hybrid of the last two pieces I’ve written on crypto. In Blockchains as Platforms, I argued that as crypto infrastructure improves, developers will need to make fewer trade-offs in order to build onchain, and as that trade-off gap shrinks, an increasing percentage of developers will choose to do so. LayerZero is crypto infrastructure that explicitly lowers trade-offs developers need to make. Instead of building on one chain or another, they can build on both. Instead of choosing an extrinsic security model that’s either too expensive or too insecure, they can choose the right spot for their product on the Security-Cost Pareto Frontier. Why does that matter? In Capitalism Onchained, I wrote that “Crypto’s ideal state is to make capitalism more effective.” Just as TCP/IP allowed information to flow freely from computer to computer, LayerZero might allow value to flow freely from computer to computer. It will speed up transaction times, increase liquidity, allow assets to move to the best opportunities more easily, increase competition, and open trade and capital flow among blockchains and their communities. If you’re still not convinced that crypto, even in its ideal state, is a valuable thing, than nothing I’ve written today will convince you; but if you believe that crypto can make capitalism more effective, then LayerZero may be an important piece in making that happen. Of course, there’s a long way to go to make that happen. LayerZero Labs has to successfully launch v2 and convince a new wave of applications and protocols to build on it. It needs to hook its endpoints into more chains, like Solana. It needs to maintain its sterling security record while significantly increasing volume. It will certainly need to fend off competitors who also recognize how valuable a position it is to be at layer zero in the stack, providing infrastructure that lasts a very long time. But it has some advantages baked into the architecture. The beautiful thing about building flexible infrastructure in the way that LayerZero has is that it improves as the ecosystem around and on top of it improves. As new Verifiers come into the network and compete for business, the Security-Cost Pareto Frontier shifts. As new Executors come into the network and compete for business, execution gets tighter. As new chains come online, each with improvements to previous models, the Omnichain gets stronger. The thing that I think will be most fascinating to watch play out if LayerZero succeeds is that L1s and L2s will need to push further to the extremes on certain capabilities. If you’re trying to compete directly with Ethereum, you might be tempted to try to do what Ethereum does, but better. That’s bad strategy. Good strategy means leaning into your differentiation. Let Ethereum have the settlement layer, and optimize for speed, price, storage, or particular use cases. Experiment with bolder trade-offs. Do one thing really well, and plug that thing into the larger network, so that the Omnichain gets more capable, and more developers choose to build applications onchain. Good technology reduces the trade-offs that people need to make. Instead of this or that, it’s: That’s what LayerZero enables. Developers can pair the security of Ethereum with the speed of an L2, tap into liquidity across chains, and build apps that are composable no matter where the best Lego blocks happen to live. And as for you? If you haven’t played around with crypto for the past year, I think you’ll be surprised at how much better it’s getting. Go bridge some ETH to Optimism or Base on Stargate and bridge it back to Ethereum mainnet. It’s a smoother experience than you might remember from the last cycle. LayerZero still has a long way to go. It’s live in a number of use cases, including DEXes (Trader Joe), stablecoins (MIM), and games (Parallel), but developers have barely scratched the surface of the omnichain app design space. Even with a better product, it will have to hook into more chains, win BD battles, and clearly communicate to developers why and how they can build better products on top of its infrastructure. But wherever we are in the price cycle, that’s the cycle that excites me most: better infrastructure enabling better applications that bring more people onchain without forcing them to sacrifice security or performance. I think LayerZero v2 is a big step in that cycle, and I’m excited to see what developers build on it. Thanks to Bryan and the LayerZero Labs team for working with me and answering my dumb questions, and to Dan for editing! That’s all for today! We’ll be back in your inbox tomorrow with a Weekly Dose. Thanks for reading, Packy |
Older messages
Weekly Dose of Optimism #72
Friday, December 8, 2023
Gemini, Qubits, Brain Implants, saRNA, Biotech on Mars, Age of Miracles
The Morality of Having Kids in a Magical, Maybe Simulated World
Wednesday, December 6, 2023
Why the Climate Crisis May Be Proof We're In a Simulation
Weekly Dose of Optimism #71
Friday, December 1, 2023
GLP-1s, Loyal, Material Discovery, Fervo,AI Optimism, Energy
Narrative Tug-of-War
Tuesday, November 28, 2023
How to read EA v. e/acc
Weekly Dose of Optimism #70
Friday, November 24, 2023
Ceasefire, Q*, Deep learning Cancer Detection, Warp Speed Learnings, Nuclear Wins, Starship Separation
You Might Also Like
The Biggest News of 2024!
Friday, December 27, 2024
Over the past year, there has been some pretty big SEO and digital marketing news that has impacted bloggers and content creators. Since its the end of the year, Jared and I decided to sit down and
Online Sales Grew This Much During the Holidays [Crew Review]
Friday, December 27, 2024
You're an Amazon whiz... but maybe not an email whiz. Omnisend makes setting up email for your brand as easy as click, drag, and drop. Make email marketing easy. Hey Reader, Merry belated Christmas
A strategy for more prospects in 2025
Friday, December 27, 2024
Today's Guide to the Marketing Jungle from Social Media Examiner... Presented by social-media-marketing-world-logo It's Make Cut Out Snowflakes Day, Reader... Let your inner child out to play!
Influence Weekly #369 - TikTok At A Crossroads: 23 Experts Weigh In On The Ban, ByteDance, And What’s Next
Friday, December 27, 2024
Social Media as a Recruitment Tool: School Bus Driver Influencers
Issue #48: When Hardware Hits Reality
Friday, December 27, 2024
Issue #48: When Hardware Hits Reality
The UGLIEST website ever? (He paid $55k for it)...
Friday, December 27, 2024
You have to hear this story, it's crazy. View in browser ClickBank Day 3 of Steven Clayton and Aidan Booth's '12 Day Giveaway' celebration has just been published. Click here to find
"Notes" of An Elder ― 12.27.24
Friday, December 27, 2024
Life is too precious to be lived on autopilot.
10 busiest VCs in supply chain tech
Friday, December 27, 2024
9 VCs that ruled 2024 fundraising; aircraft parts market becomes a hotbed for PE; EMEA's 10 biggest buyout funds Read online | Don't want to receive these emails? Manage your subscription. Log
🔔Opening Bell Daily: Housing Outlook 2025
Friday, December 27, 2024
Mortgage rates have climbed as the Fed has cut borrowing costs, and unaffordability will likely persist in the new year.
There's no point in being Data-Driven if your data actually sucks
Friday, December 27, 2024
On strength of schedule, better decision-making and a major trend of 2024