MiCA: The good, the bad and the ugly of the EU’s crypto rules

31 August 2023

Cointelegraph By Mike Sarvodaya

The European Union’s Markets in Crypto-Assets regulatory framework isn’t all good, but it provides a level of clarity foreign to the United States.

Opinion

Join us on social networks

While United States regulators such as Securities and Exchange Commission Chair Gary Gensler make bad-faith claims that “there’s been clarity for years” when it comes to cryptocurrency, the European Union took real action in April when it passed the Markets in Crypto-Assets (MiCA) regulatory framework. While imperfect, it was a crucial move in the right direction for our industry and a signal to the U.S. that it will be left behind if it continues to stand still and rely on antiquated regulations.

Similar to how Bitcoin (BTC) took old technological, economic and financial concepts to build something new, regulators must rework existing regulatory and financial security frameworks to create a successful environment for participants. There are many useful and valid elements in our existing financial and regulatory frameworks.

Related:An ETF will bring a revolution for Bitcoin and other cryptocurrencies

On the other hand, there are many problems with the blockchain industry that the traditional regulatory framework does not address sufficiently — this leads to frustration and wasted resources as lawyers bicker over potential interpretations of statements instead of abiding by clearly defined legislation.

While Web3’s practical applications have shown great potential, it remains a remix of this traditional financial system — albeit a remix dedicated to improving efficiency, openness and fairness for all participants.

MiCA: A necessary but mediocre step forward for regulation

Despite the complex language around financial and securities regulations, the situation is really more simple than it appears. In short, our regulations attempt to prevent people from doing bad things to other people. Examples could include terrorists sending or receiving money to facilitate acts of terrorism or fraudsters making fraudulent claims to investors. It also includes ensuring that licensed individuals and entities are held accountable to a set of operating standards developed over the history of our modern financial markets.

In the more technical sense, the laws governing these operating standards are:

Anti-Money Laundering and Counter-Terrorist Financing lawsSecurities and commodities lawsMarket infrastructure regulation

Despite the SEC’s insistence that existing regulations cover these three issues broadly, many elements manage to fall through the cracks of these roughly 100-year-old definitions, rules and penalties. We can largely attribute that problem to two things.

One is the categorization of digital assets. Are they commodities or securities, or do they fall under an entirely new category? Digital tokens often exhibit characteristics of one, both or neither, creating a significant dilemma for existing frameworks.

An overview of MiCA’s key points. Source: Circle

The second is that the pace of innovation far outstrips the rate at which slow and sophisticated traditional finance regulatory frameworks can adapt. Governments have the responsibility of establishing regulations that are robust enough to prevent misconduct and protect stakeholders, yet flexible enough to accommodate the advancements promised by this burgeoning industry. How are these authorities supposed to compete with a smart contract that can be deployed in minutes and then upgraded that same day to have a completely different set of logic and parameters?

To those of us in this fast-moving industry, it is glaringly obvious that we need new regulations and guidelines that are compatible with the unique benefits and challenges Web3 offers.

MiCA constitutes one promising attempt, though the framework will struggle as the individual member-states of the EU test the framework in their native courts and build a patchwork example of cases with varied outcomes. That being said, here’s the good, the bad and the ugly of MiCA.

MiCA: The good

The best part of MiCA? Tighter rules and larger punishments for crypto asset service providers who lose customer funds! This is a longstanding issue within crypto where the exchanges and wallets have no liability when they are hacked or compromised and lose users’ funds, and has led to tens of billions of dollars lost with no options for users. This is unacceptable and has directly contributed to many individuals being irrevocably destroyed in our industry by bad actors.

MiCA: The bad

Although it states a primary goal of preventing market manipulation, the majority of manipulation is happening outside of the EU (via offshore entities), so it doesn’t really help many people directly. It may help indirectly, though, as it signals to the market the direction regulators are moving toward — though this also depends on the punishments levied when cases come to a judge.

Related:3 takeaways from the European Union’s MiCA regulation

Noticeably excluded are decentralized finance and future central bank digital currencies. Although it might be seen as a positive that DeFi is not included, the vast majority of on-chain transactions and activity are DeFi, and it is frustrating that this was skipped.

MiCA: The ugly

Unfortunately, there are many concerning or otherwise “ugly” elements present in MiCA that readers must be aware of, and not only if they’re EU citizens.

The “Travel Rule” greatly increased the surveillance and recording of financial transactions and online activity in an unprecedented manner by forcing service providers to identify the recipient as well as the sender for every transaction.A very low threshold of 1,000 euros for reporting leads to increased surveillance, as compared with the traditional threshold of $10,000 in the United States for banks. It’s irritating to have regular people be subjected to these Orwellian levels of scrutiny, given that the vast majority of financial malfeasance is done by larger banks and institutions via money laundering and other fraudulent activities.It requires official approval from lawmakers before launching tokens or liquidity. This will dramatically stifle the number of legitimate projects launched within the EU, both directly and indirectly. It’s hard to assume that the queues will be short and the process expeditious — governments have proven time and time again that they are slow and inefficient, especially where new technologies are concerned.

There’s another core problem inherent in any regulation by the European Union that bears repeating: The fragmented nature of the EU’s court system makes it difficult to draw meaningful conclusions about the impact of individual future rulings. In short, this is a minor win for Web3 and requires much more work around the world by regulators.

This is in stark contrast to the U.S. court system, which is — traditionally, albeit not with Web3 — a unified and solid foundation of legal rulings. A fragmented series of rulings makes it very unlikely that other countries will really follow MiCA full-steam ahead; instead, they will likely wait for the U.S. to come out with its own substantial framework and regulatory guidelines.

Regulators, exchange operators and founders all say that until the U.S. has a substantial set of regulatory guidelines, they will be proceeding very cautiously and slowly. Although they may take some inspiration from MiCA, it is not the North Star they need.

The blockchain industry is at a crossroads, for both regulators and users. Countless individuals have had their life savings ruined by fraud and scams, while regulators have struggled to keep up with the rapid pace of innovation in the industry.

Mike Sarvodaya is the founder of the Galactica Network, a layer-1 protocol that leverages zero-knowledge cryptography to achieve Sybil resistance, compliant privacy and infuse robust reputation primitives into DeFi and DAOs. He graduated first in his class from Utrecht University with an MsC in financial econometrics. Before Galactica, he spent the majority of his career as a risk manager and analyst at global hedge funds focused on proprietary trading in currencies, stocks, commodities, and digital assets.

This article is for general information purposes and is not intended to be and should not be taken as legal or investment advice. The views, thoughts and opinions expressed here are the author’s alone and do not necessarily reflect or represent the views and opinions of Cointelegraph.

  

You might also like

Trump supports bill to buy 1 million BTC — Senator Lummis  
Trump supports bill to buy 1 million BTC — Senator Lummis  

US President Donald Trump supports the BITCOIN Act and has a team of experts in the White House working to roll out landmark digital asset legislation in the coming weeks, according to Wyoming Senator Cynthia Lummis. Speaking at the Bitcoin 2025 conference in Las Vegas, Nevada, Lummis said she is bringing the BITCOIN ACT to the “attention of the American people and the world,” adding that, “President Trump supports the bill.”In March, Lummis reintroduced the BITCOIN Act — landmark legislation that directs the US government to acquire 1 million Bitcoin (BTC) over five years. The acquisitions would be financed using existing funds within the Federal Reserve System and the Treasury Department. As Cointelegraph reported, the Trump administration has reiterated the need to use “budget-neutral ways” to acquire Bitcoin without burdening taxpayers.Source: CryptoGoosAt the Bitcoin Conference, Lummis said the Trump administration has a team working on “digital asset issues,” including legislation on stablecoins, market structure and the Bitcoin Strategic Reserve.“They will probably roll out in that order,” she said.“The Senate Banking Committee has passed the stablecoin bill out of committee,” said Lummis, adding: “We’re getting close to being ready to have it on the floor. We’ve worked for untold hours with the minority party to satisfy them, and we should be voting on it the week before we get back from this break.”Related: Senator Lummis’ new BITCOIN Act allows US reserve to exceed 1M BitcoinGENIUS Act on stablecoins is “going to pass,” says White House crypto czarThe White House seems to be in alignment with Senator Lummis. Last week, Trump’s top crypto adviser, David Sacks, said the GENIUS stablecoin bill is “going to pass” the Senate with bipartisan support after clearing a key procedural vote on May 19.On May 19, the Senate voted 66 to 32 to advance debate on the GENIUS Bill. Source: US SenateGENIUS refers to the Guiding and Establishing National Innovation for US Stablecoins Act, possibly the most comprehensive federal push to establish a legal framework for dollar-pegged stablecoins.Stablecoins have become one of the most prominent use cases for blockchain technology, with some industry advocates arguing that they could help extend the US dollar’s dominance as the global reserve currency.Collateralized, dollar-backed stablecoins like Tether’s USDt (USDT) and Circle’s USDC (USDC) account for more than 85% of the $250 billion market, according to CoinMarketCap.Related: Former CFTC chair criticizes STABLE Act amid calls for urgent regulatory clarity

Growing BTC reserve requires Congressional legislation — VanEck exec  
Growing BTC reserve requires Congressional legislation — VanEck exec  

Building a permanent US strategic Bitcoin reserve would likely require targeted legislation rather than executive action, according to VanEck’s head of digital assets, Matthew Sigel. Speaking at Bitcoin 2025 in Las Vegas, Sigel said the most viable path forward may involve inserting Bitcoin mining incentives into the congressional budget reconciliation process.According to Sigel, the most effective path to growing a US strategic Bitcoin reserve would be through targeted amendments to congressional budget legislation. These could include tax credits for mining companies that use methane gas and other incentives aimed at encouraging miners to share a portion of their mined BTC with the federal government. He argued that such an approach would allow the reserve to grow organically over time. Sigel also highlighted the limitations of executive actions in achieving this goal:”The problem with executive action is that it’s going to prompt lawsuits. And anything over $100 million is going to get sued by the Elizabeth Warrens of the world. So, I would say start with something maybe in the Exchange Stabilization Fund for $100 million.”US President Donald Trump established the US Bitcoin Strategic Reserve through a March 7 executive order. According to the order, the US government can only acquire Bitcoin through budget-neutral strategies or asset forfeiture, prompting a range of different ideas on how to add to the government’s stockpile of nearly 200,000 BTC.From left to right, Alex Thorn, Matthew Sigel, Matthew Pines and Fred Thiel. Source: Turner Wright/CointelegraphRelated: Bitcoin’s new highs may have been driven by Japan bond market crisisLawmakers, officials pitch different ideas to grow strategic Bitcoin reserveWyoming Senator Cynthia Lummis, the US lawmaker who introduced legislation for a Bitcoin strategic reserve in July 2024, proposed converting a portion of the gold certificates held by the US Treasury to Bitcoin.Converting gold to Bitcoin would allow the US government to purchase more Bitcoin without incurring a cost to the taxpayer, Lummis said.Bo Hines, the executive director of the President’s Council of Advisers on Digital Assets, echoed the idea in March 2025.Hines called on the US Treasury to revalue its gold holdings, which are currently priced at just $42.22 per troy ounce, and convert a portion of those gains to Bitcoin. This strategy would also be budget-neutral, Hines said.The price of gold reached an all-time high of $3,500 per ounce in April but experienced a minor pullback to around $3,300 on May 27.Magazine: TradFi fans ignored Lyn Alden’s BTC tip — Now she says it’ll hit 7 figures: X Hall of Flame

ZKPs can prove I'm old enough without telling you my age  
ZKPs can prove I'm old enough without telling you my age  

Opinion by: Andre Omietanski, General Counsel, and Amal Ibraymi, Legal Counsel at Aztec LabsWhat if you could prove you’re over 18, without revealing your birthday, name, or anything else at all? Zero-knowledge proofs (ZKPs) make this hypothetical a reality and solve one of the key challenges online: verifying age without sacrificing privacy. The need for better age verification todayWe’re witnessing an uptick in laws being proposed restricting minors’ access to social media and the internet, including in Australia, Florida, and China. To protect minors from inappropriate adult content, platform owners and governments often walk a tightrope between inaction and overreach. For example, the state of Louisiana in the US recently enacted a law meant to block minors from viewing porn. Sites required users to upload an ID before viewing content. The Free Speech Coalition challenged the law as unconstitutional, making the case that it infringed on First Amendment rights. The lawsuit was eventually dismissed on procedural grounds. The reaction, however, highlights the dilemma facing policymakers and platforms: how to block minors without violating adults’ rights or creating new privacy risks.Traditional age verification failsCurrent age verification tools are either ineffective or invasive. Self-declaration is meaningless, since users can simply lie about their age. ID-based verification is overly invasive. No one should be required to upload their most sensitive documents, putting themselves at risk of data breaches and identity theft. Biometric solutions like fingerprints and face scans are convenient for users but raise important ethical, privacy, and security concerns. Biometric systems are not always accurate and may generate false positives and negatives. The irreversible nature of the data, which can’t be changed like a regular password can, is also less than ideal. Other methods, like behavioral tracking and AI-driven verification of browser patterns, are also problematic, using machine learning to analyze user interactions and identify patterns and anomalies, raising concerns of a surveillance culture.ZKPs as the privacy-preserving solutionZero-knowledge proofs present a compelling solution. Like a government ID provider, a trusted entity verifies the user’s age and generates a cryptographic proof confirming they are over the required age. Websites only need to check the proof, not the excess personal data, ensuring privacy while keeping minors at the gates. No centralized data storage is required, alleviating the burden on platforms such as Google, Meta, and WhatsApp and eliminating the risk of data breaches. Recent: How zero-knowledge proofs can make AI fairerAdopting and enforcing ZKPs at scaleZKPs aren’t a silver bullet. They can be complex to implement. The notion of “don’t trust, verify,” proven by indisputable mathematics, may cause some regulatory skepticism. Policymakers may hesitate to trust cryptographic proofs over visible ID verification. There are occasions when companies may need to disclose personal information to authorities, such as during an investigation into financial crimes or government inquiries. This would challenge ZKPs, whose very intention is for platforms not to hold this data in the first place.ZKPs also struggle with scalability and performance, being somewhat computationally intensive and tricky to program. Efficient implementation techniques are being explored, and breakthroughs, such as the Noir programming language, are making ZKPs more accessible to developers, driving the adoption of secure, privacy-first solutions. A safer, smarter future for age verificationGoogle’s move to adopt ZKPs for age verification is a promising signal that mainstream platforms are beginning to embrace privacy-preserving technologies. But to fully realize the potential of ZKPs, we need more than isolated solutions locked into proprietary ecosystems. Crypto-native wallets can go further. Open-source and permissionless blockchain-based systems offer interoperability, composability, and programmable identity. With a single proof, users can access a range of services across the open web — no need to start from scratch every time, or trust a single provider (Google) with their credentials.ZKPs flip the script on online identity — proving what matters, without exposing anything else. They protect user privacy, help platforms stay compliant, and block minors from restricted content, all without creating new honeypots of sensitive data.Google’s adoption of ZKPs shows mainstream momentum is building. But to truly transform digital identity, we must embrace crypto-native, decentralized systems that give users control over what they share and who they are online.In an era defined by surveillance, ZKPs offer a better path forward — one that’s secure, private, and built for the future.Opinion by: Andre Omietanski, General Counsel, and Amal Ibraymi, Legal Counsel at Aztec Labs.This article is for general information purposes and is not intended to be and should not be taken as legal or investment advice. The views, thoughts, and opinions expressed here are the author’s alone and do not necessarily reflect or represent the views and opinions of Cointelegraph.