Saturday, November 12, 2016

OpenBazaar: Truly Free Trade Through Crypto

All of the privacy tools in the world won't help one if all of one's commerce is centralized through a few corporate websites that eagerly mine one's information to sell to advertisers and governments either directly or indirectly. With time, a person can be profiled and targeted. The classic example of the pressure-cooker-backpack police raid shows that United States online purchases have become watched as if we lived in a totalitarian nation. 

While most agree that customs and standardized import restrictions in the real world are useful, many dislike it online. One country may impose political views upon the entire rest of the world because of the location that a business incorporates. The ability to censor what is sold, to fix prices, and to impose localized trade restrictions degrades free trade. Ebay, Amazon, and Etsy refuse to allow for resale of many items. This pushes users into the murky waters of sites without a verified trust system. Trust is the bedrock of online commerce. 

OpenBazaar seeks to create a fully distributed marketplace protocol which optimizes for anonymity, freedom, trustworthiness, and convenience. The restriction of full distribution without any central arbitrators or global buyer enumeration forces a creative architecture that promises high scalability. 

Threat Model

OpenBazaar has two classes of enemies worth considering. The first wants to abuse the system much as users abuse existing commerce sites on a daily basis. The latter wants to perform an expensive, widespread attack to deanonymize users or degrade the entire system.

Bad vendors and buyers are addressed very well through the power of multisig Bitcoin transactions and through OpenBazaar's web of trust model. 

The web of trust (which we explain better later) allows a buyer who trusts a small number of peers to iteratively predict the trust they should place in another peer. This network is created through using external services, interaction, or personal history.

When a sale occurs, the buyer and vendor pick a peer that both trust create a Bitcoin transaction which requires that 2 of the 3 parties agree to the transaction for it to move forward. This allows for arbitration without relying on a centralized support team. If one fears that a bad node may be picked, this type of contract can scale indefinitely. One could construct a system where 8 of 15 nodes must agree to the transaction, or it does not go through. Shipping tracking information and terms of the sale are placed into a cryptographically-traceable ledger that acts as a log for arbitration. 

Globally malicious attackers require a different type of strategy. Transactions occur over the blockchain, meaning that an impersonation (Sybil) attack would require an attacker to spend an unfeasible amount of money to overload vendors. In essence, they would simply be buying out the market and aiding business! 

To impersonate a vendor, an attacker would need to gain trust by becoming a vendor. Once they begin acting badly and tying up arbitrator time, their reputation will suffer. In this way, a Sybil attack degrades into a failed attempt to game the system.

Deanonymization attacks are the only justified fear. OpenBazaar does a good job of tackling the problem better than previous solutions. By preventing one from seeing the entire web of trust, OpenBazaar prevents an adversary who can observe some mail and who know a few users' identities from inductively tracing down every purchaser and vendor. 

A malicious vendor will be able to see one's IP address if Tor isn't used. Currently, Tor and OpenBazaar do not interoperate together perfectly. This is coming quite soon though, and current usage seems to be good enough for certain network operations. Oddly enough, OpenBazaar suggested one day rolling out an onion routing mail protocol. By encrypting subsequent addresses and sending the package to intermediate peers, one can mimic Tor and avoid exposing the sender address to the purchaser. This would carry a stamp cost, but may be able to keep people safe from persecution. 

Technical Difficulties

Attackers are not the only challenge faced by OpenBazaar. OpenBazaar is prevented from making certain naive design choices due to their commitment to convenience and scalability. 

While using a blockchain technology like Ethereum to host traffic would have been easy, it would have added an unacceptable latency and mining fee to each transaction. Furthermore, it's an expensive model for needless consistency. The network view is quite localized; a buyer only needs to talk to the vendor most of the time. 

Reputation change is included in the Bitcoin blockchain, but this information is included in a Bitcoin transaction that would have to happen anyways. 

Lastly, the commitment to full distribution forced OpenBazaar to make choices about what types of products they can create. OpenBazaar is primarily a protocol, not an application. There can be multiple frontends. This forced OpenBazaar to make a "machine readable" trade format that sends the required information over JSON. At the same time, "human readable" names must be used to allow users to familiarize themselves with vendors. 

Sale Architecture

The secret behind OpenBazaar's indefinite scalability is the use of their Kademlia-style distributed hash table. This DHT associates a globally unique identifier with a peer's hostname and port. This identifier is a self-signed public key that has been hashed twice. This GUID cannot be reused by another peer without access to the private key in the keypair.

As such a GUID would be unacceptably difficult to remember for most people, OpenBazaar can use the Blockstack system to associate identities with GUIDs. OpenBazaar initially used Namecoin, but switched to the alternative Blockstack. Blockstack embeds identities into any suitable blockchain, rather than requiring the separate Namecoin blockchain. This has the advantage of not requiring explicit support from mining pools, which increases the number of nodes mining the block. This, argues many, makes Blockstack more secure. Other information in the Blockstack entry can be used for external validation. It's worth noting that this could compromise anonymity entirely for some vendors.

In order to allow for people to quickly find a peer's listed items, the DHT also contains the hashes and keywords for items that are listed for sale. After finding the hash of an item listing, a peer can then request this listing from the vendor in a direct P2P manner. If this architecture feels like BitTorrent, that is because it is remarkably similar.

These listings are known as Ricardian Contracts and are digitally signed documents with the necessary server information and public keys for a peer to resume the contract's back-and-forth. Contracts describe everything related to the listing, in a JSON-encoded document. The format is flexible enough that the merchant can describe the structure of payment and business that they expect from a buyer.

This means that OpenBazaar suits both digital and physical goods, and could potentially be used for labor and "sharing economy" tasks. Without a centralized authority taking a steep cut, OpenBazaar would be quite attractive. The web of trust that we will cover next can be used to establish a validated reputation to keep people safe.

Web of Trust and Ratings

There are two cases that we trust a person in our daily lives. We typically either have had extensive interaction with a person, or we have had it with someone who trusts them very well. In OpenBazaar, this is also the case. 

"Direct" trust can be established between people who validate each other's identity through other channels. If one doesn't have direct trust rating for a peer one wishes to query the evaluation of, one asks one's peers what their trust rating for the peer is. They perform a similar recursive check and query. Eventually, this bottoms out with a series of trust estimation chains. 

A trust value ranges between 0 and 1 for positive trust, and 0 and -1 for distrust. The peers one will query from must be trusted, and must therefore have a trust between 0 and 1. This can therefore be used as a scale factor. By taking the product of the trusts along the chain, and summing up all such products, the query finds an aggregate trust for the peer for a node's corner of the web. 

This system is entirely decentralized. The partial observability built into it also prevents deanonymization through passive observation by a nation-state adversary. To avoid enumeration, nodes must only allow queries from trusted nodes. 

There is one worrying attack that OpenBazaar is vulnerable to. A peer which copies the listings of another vendor could simply forward buyer requests to another peer. This would lead to an accumulation of trustworthy interactions with an untrustworthy individual. Furthermore, this attack is cheap. It could be done by almost anybody. The definitive way to check for one such abuse is for the vendor to include a copy of their GUID and key material inside the shipment. A buyer can therefore find out if something is wrong, and can spread news of distrust throughout the network. An adversary who is willing to receive and repackage shipments is essentially acting as a legitimate reseller. 

This system can be insufficient though. The web of trust should be a single web; this system is not difficult to partition. In order to provide a global trust score for some users, an external resource must be burned to prevent someone from creating many globally-trusted accounts and bootstrapping evil peers of these accounts to be recommended indirectly. The current best solution to that is simply to buy your good graces. By using Bitcoin's scripting language to make coins unspendable while recording the user's hash, a user can provide global evidence that their account cost them money to keep. The economic disincentive for that peer to behave badly has been proven to the network. 

The rating system is different. It's much more fine-grained for starters, enabling a review of shipment time and item quality as well as other attributes. Secondly, the goal is not to tell whether a peer is abusive but whether they offer a high-quality service. Ratings and reviews are documents in the DHT which have their hash embedded in the payment Bitcoin transaction. Ratings require transactions, which require a purchase with the vendor. Impersonation and sybil attacks are mitigated in this way.

Vendors do not review buyers, as all opportunities for buyer abuse are mitigated or arbitrated away by the protocol.

Success of Protocol

There are currently between 5,000 and 5,500 listings posted to OpenBazaar DHT. One can find everything from Alibaba purchases to expensive teas to physical and digital artwork. The network is slowly but steadily growing, and appears to have a lot of users who remain lightly active. 

The myriad of implementations are likely the reason. The official desktop application is a Javascript desktop application written using the Electron shell. For mobile, there is BazaarHound. Both of these allow for interactive exploration and make it easy to instantaneously purchase an order. 

Search on the applications could be better though. For this, there are two popular search engines: and BazaarBay. The former appears much more polished, competing with many small-time centralized interfaces for quality.

The official desktop application can be made to work through Tor, to add and another layer of anonymity. Information about one's host may be leaked by the information in the protocol itself though, and it's not clear right now how much the software will expose. In OpenBazaar 2.0, CoinDesk promised Tor integration from the ground up. The reliance on the IPFS (inter-planetary filesystem, a BitTorrent-like file network) means that IPFS must work perfectly with Tor for OpenBazaar to. 

This protocol has multiple implementations and is growing to carry many novelties and staples steadily. The flexibility and trustworthiness of the service means that OpenBazaar makes an amazing platform for new applications of the sharing economy which protect the users' privacy.



  1. GMA Network (Global Media Arts or simply GMA) is a major commercial television and radio network in the Philippines that is owned by GMA Network Inc. a publicly listed company. Headquartered on GMA Network Center, Diliman, Quezon City. The following is a list of all television programming that GMA Network is source

  2. Which Crypto currencies openbazaar accepts? Do you have Ico list which openbazaar accepts? and what is the ico exchange rates? If not then you can check complete ICO list on IcoPulse website. They have all crypto data on their site.

  3. Ico Pulse has some of the best investment currently available and they are known as ICO best investment. All the investment that I'm talking about is going to be the only reason for me to know how to get people from here and to tell them that there is nothing wron gin this. It's all good with me.

  4. The CC world has no central controlling body where regulations can be implemented across the board, and that leaves each country around the world trying to figure out what to do.

  5. I have read your blog it is very helpful for me. I want to say thanks to you. I have bookmark your site for future updates. table top popup display

  6. I want you to thank for your time of this wonderful read!!! I definately enjoy every little bit of it and I have you bookmarked to check out new stuff of your blog a must read blog! coin airdrop

  7. i am glad to see this.

  8. Want to be cool like me to spend my day off? Go on the link there you can have a good time and earn some extra money beneficial casino on net I wish good luck

  9. Just pure classic stuff from you here. I have never seen such a brilliantly written article in a long time. I am thankful to you that you produced this! earn free bitcoin

  10. This is an incredible rousing article.I am basically satisfied with your great work.You put truly exceptionally accommodating data...  Tedd Young Crpto Currencty News

  11. There are a few advantages of utilizing the trade copier programming. The product changes over indispensable trade information into a simpler configuration and duplicates it to various records at the same time.view publisher site

  12. "Crypto" - or "crypto monetary standards" - are a sort of programming framework which gives value-based usefulness to clients through the Internet. free tokens

  13. Regular visits listed here are the easiest method to appreciate your energy, which is why why I am going to the website everyday, searching for new, interesting info. Many, thank you bsdisplays

  14. There is a lot of NEWS in this market every day. Here are some highlights that give us a glimpse of how new and exciting this market space is:
    Gigzhub Proxy Marketing Service

  15. . You can look over a great deal of specialist organizations. Given beneath are a couple of tips that can enable you to pick the correct one. Peruse on to know more. Top 10 Trading Platform

  16. You completed certain reliable points there. I did a search on the subject and found nearly all persons will agree with your blog. passive income with cryptos

  17. “Nice Post. It’s really a very good article. I noticed all your important points. Thanks"
    Real Crypto Currency Hub

  18. It will give you the money related likeness the sum you entered from your first currency to the next and simultaneously, give you information with respect to how much the unit identical per currency is.convert money calculator

  19. The actual division associated with transportation estimations for any truck transporting 20 tonnes, averaging 50 michael. g. they would. it creates 670g for each km or even 1078g for each kilometer. The HGV journey through Birkenstock boston, Lincolnshire in order to Nottingham, the range associated with fifty five kilometers produces 0. 059 metric tonnes associated with CO² (0. 065 UNITED KINGDOM tons). Trade Guardian

  20. Positive site, where did u come up with the information on this posting? I'm pleased I discovered it though, ill be checking back soon to find out what additional posts you include. best cable company

  21. Cash FX The Better Way To Your Financial Future. Ask Me How? bitcoin forex trading

  22. When bitcoin currency is changed over from currency into cash, that interface needs to stay under some regulatory shields. I think the way that inside the bitcoin universe a calculation replaces the capacity of the legislature. If you want to know more, Please check out here: Bitmex Resources

  23. This comment has been removed by the author.

  24. If you are dentist and looking for new patient in your clinic then you need to try our dental seo service to getting new patient.

  25. 소액결제 현금화 Took me time to read all the comments, but I really enjoyed the article. It proved to be Very helpful to me and I am sure to all the commenters here! It’s always nice when you can not only be informed, but also entertained!

  26. You have performed a great job on this article. It’s very precise and highly qualitative. You have even managed to make it readable and easy to read. You have some real writing talent. Thank you so much. 상품권 현금화

  27. 대포통장 Thank you very much for this great post.

  28. Very nice Blog, you are sharing very nice information,

    if someone here looking to read awesome stories kindly visit my site DelhiMeraki
    thank you

  29. What makes this world so exciting is the volatility of the value of crypto currency. The price movements offer a lot of opportunities for traders. However, see latest blog posts this comes with a lot of risk as well. Therefore, if you decide on exploring the market, just make sure you do your research and put together a risk management strategy.

  30. i am browsing this website dailly , and get nice facts from here all the time .

  31. really good article! you might as well want to check ufabet . Go to the website for more information

  32. Cryptocurrencies promote globalization and Bitcoin will help provide that opportunity to Latin America, which is eager to compete and grow in the global marketplace. accept bitcoin

  33. The Bitcoin marketplace is worldwide and the residents of China and Japan had been in particular energetic in its buy along with different Asian international locations.How to recover your stolen bitcoin

  34. They also are on a first name basis with the decision makers of the largest corporate players who may help donate money to the program after it gets going and you need more signs and other materials. best AWS developer courses

  35. Good job here im given you link for Download Adobe After Effects CC Crack You can download with License Key serial number and Crack File 2021.

  36. It is critical to recall that during the game, the primary concern is to stop as expected so as not to lose all the cash or not go into a misfortune
    Wise Registry Cleaner Pro Crack
    Positive site, where did u come up with the information on this posting?
    Tuneup Utilities Pro Crack
    I'm pleased I discovered it though,
    Safe365 SD Card Data Recovery Wizard Crack
    ill be checking back soon to find out what additional posts you include
    MKVToolNix Crack
    The aftereffect of the wager is consistently speedy, for instance, a single move of dice,
    Cyberlink PowerDVD Crack
    Regardless, everybody can locate an appropriate kind of betting for themselves.

  37. I was searching to get more accurate terms, about the topic, you have released here. This
    is more curative for me to find after so a long time. PGWare GameBoost 3 Crack

  38. I’ve joined your feed and look ahead to seeking more of your great post.
    Additionally, I have shared your site in my social networks

    FL Studio Crack

    Adobe Camera Raw Crack

    Graphic Designer Crack

    Most of us know about an effective method that provides helpful tips and advice through your site and also increases the engagement of others with this article so that our fans can start learning.
    Many enjoy the rest of the New Year. You are doing well

    Autodesk AUTOCAD 2021 Crack

    Zoner Photo Studio Crack

    PGWare GameBoost Crack

    Most of us know about an effective method that provides helpful tips and advice through your site and also increases the engagement of others with this article so that our fans can start learning.
    Many enjoy the rest of the New Year. You are doing well