Crypto Chronicles · September 1992 – March 1993

The Cypherpunk Manifesto

Sixteen years before Bitcoin's genesis block, a small mailing list of Bay Area programmers wrote down the actual argument for why it needed to exist, and then, true to their own motto, went and built it themselves.

Every other chronicle in this series eventually leads back here, whether it says so explicitly or not. Before Satoshi, before Vitalik, before Zcash and Monero and every argument this series has already had about financial surveillance, there was a mailing list, a handful of Bay Area cryptographers, and a twelve-paragraph document that laid out, with unusual precision, exactly what all of it was for.

1988The Radical Version, First

The intellectual seed came even earlier, from Timothy C. May, a former Intel physicist, whose 1988 "Crypto Anarchist Manifesto" imagined something genuinely startling for its time: an economy running on cryptography so strong that governments simply couldn't monitor or tax it, anonymous markets, untraceable transactions, entire categories of state power rendered obsolete by math rather than politics. It was deliberately provocative, closer to a thought experiment than a plan. It set the outer boundary of what the movement it inspired would spend the next several decades actually trying to build.

september 1992A Living Room in Oakland

The movement itself started smaller and more practical. Eric Hughes began hosting informal meetings at his home in Oakland, California, with May and John Gilmore, an early Sun Microsystems engineer and co-founder of the Electronic Frontier Foundation, joining as the group's third anchor. The gatherings soon moved to Cygnus Solutions, Gilmore's company in Sunnyvale. Out of those meetings came the Cypherpunk mailing list, launched that September, and quickly filled with dense, technical, unmistakably political discussion of cryptography, privacy, and what both could mean for ordinary people, not just governments and spies.

march 9, 1993Twelve Paragraphs, One Argument

Six months later, Eric Hughes distilled the group's thinking into a short, roughly 1,700-word document he posted to the list: "A Cypherpunk's Manifesto." Its opening line became one of the most quoted sentences in the entire history of digital privacy.

"Privacy is necessary for an open society in the electronic age."Eric Hughes, "A Cypherpunk's Manifesto," March 9, 1993

The manifesto's central argument was narrower, and more actionable, than May's earlier vision: privacy wasn't the same thing as secrecy, and it wasn't something you could reliably get by asking governments or corporations nicely to look away. It had to be built, technically, into the systems themselves, through cryptography that made surveillance mathematically difficult rather than merely illegal. The document closed with what became the group's defining motto, repeated so often it eventually functioned as an identity: cypherpunks write code. Not petitions. Not policy papers. Working software, released into the world, that made the argument moot by simply existing.

who was actually on the listThe Roster That Built Everything Else in This Series

The mailing list itself is where this story stops being philosophy and starts being a genealogy. Tap through a few of the names.

select cypherpunk mailing list members

1991–1996When Cryptography Was Legally a Weapon

The stakes weren't abstract. Phil Zimmermann, a member of the broader cypherpunk-adjacent community, released PGP, Pretty Good Privacy, free encryption software, in 1991. Because U.S. export law at the time classified strong cryptography as a munition, the same legal category as missiles and firearms, Zimmermann found himself the target of a three-year federal criminal investigation for allegedly exporting weapons without a license, simply for letting people download encryption software. The case was eventually dropped without charges, but it made the cypherpunks' central claim concrete: a government had, quite literally, treated the right to keep a secret as a matter of national arms control.

1,700words in the original manifesto
3 yearsZimmermann's federal "munitions" investigation

the gestationSixteen Years From Manifesto to Genesis Block

Scrub through the timeline below to see how long the actual idea took to become working software.

from crypto anarchist manifesto to bitcoin
1988
Timothy May circulates the Crypto Anarchist Manifesto, imagining an economy cryptography could make untraceable and untaxable.
1988199219931991–961998–20052008–09

january 2009The Payoff, Posted to a Direct Descendant

When Satoshi Nakamoto finally circulated the Bitcoin whitepaper in late 2008, it went out on the Cryptography Mailing List, a direct successor to the cultural and technical world the cypherpunks had built. One of the first people to take it seriously and receive an actual Bitcoin transaction was Hal Finney, who'd spent the 1990s writing code for Eric Hughes' own anonymous remailer project. The line from a living room in Oakland to Bitcoin's genesis block isn't a metaphor. It's a fairly short, fairly well-documented chain of the same handful of people, working on the same underlying problem, for sixteen years.

the legacyEvery Later Argument in This Series Is Already in Here

Read today, the manifesto's core tension is the exact same one this series keeps circling back to, in different jurisdictions and different decades: whether ordinary people are entitled to financial and communications privacy as a default, or whether that's a conditional privilege regulators, exchanges, and governments get to grant and revoke. Monero, Zcash, PGP, Tor, Bitcoin itself, all of it traces back to the same twelve-paragraph bet: that code, once written and released, is harder to take back than a law is to pass.

Cypherpunks write code. Thirty-three years later, most of the code they were arguing for actually got written, by them and by the people who read their mailing list, and the argument about whether any of us are allowed to use it still isn't settled.

Crypto Chronicles · a running series on the moments that shaped crypto

The actual manifesto:

Privacy is necessary for an open society in the electronic age. Privacy is not secrecy. A private matter is something one doesn’t want the whole world to know, but a secret matter is something one doesn’t want anybody to know. Privacy is the power to selectively reveal oneself to the world.

If two parties have some sort of dealings, then each has a memory of their interaction. Each party can speak about their own memory of this; how could anyone prevent it? One could pass laws against it, but the freedom of speech, even more than privacy, is fundamental to an open society; we seek not to restrict any speech at all. If many parties speak together in the same forum, each can speak to all the others and aggregate together knowledge about individuals and other parties. The power of electronic communications has enabled such group speech, and it will not go away merely because we might want it to.

Since we desire privacy, we must ensure that each party to a transaction have knowledge only of that which is directly necessary for that transaction. Since any information can be spoken of, we must ensure that we reveal as little as possible. In most cases personal identity is not salient. When I purchase a magazine at a store and hand cash to the clerk, there is no need to know who I am. When I ask my electronic mail provider to send and receive messages, my provider need not know to whom I am speaking or what I am saying or what others are saying to me; my provider only need know how to get the message there and how much I owe them in fees. When my identity is revealed by the underlying mechanism of the transaction, I have no privacy. I cannot here selectively reveal myself; I must always reveal myself.

Therefore, privacy in an open society requires anonymous transaction systems. Until now, cash has been the primary such system. An anonymous transaction system is not a secret transaction system. An anonymous system empowers individuals to reveal their identity when desired and only when desired; this is the essence of privacy.

Privacy in an open society also requires cryptography. If I say something, I want it heard only by those for whom I intend it. If the content of my speech is available to the world, I have no privacy. To encrypt is to indicate the desire for privacy, and to encrypt with weak cryptography is to indicate not too much desire for privacy. Furthermore, to reveal one’s identity with assurance when the default is anonymity requires the cryptographic signature.

We cannot expect governments, corporations, or other large, faceless organizations to grant us privacy out of their beneficence. It is to their advantage to speak of us, and we should expect that they will speak. To try to prevent their speech is to fight against the realities of information. Information does not just want to be free, it longs to be free. Information expands to fill the available storage space. Information is Rumor’s younger, stronger cousin; Information is fleeter of foot, has more eyes, knows more, and understands less than Rumor.

We must defend our own privacy if we expect to have any. We must come together and create systems which allow anonymous transactions to take place. People have been defending their own privacy for centuries with whispers, darkness, envelopes, closed doors, secret handshakes, and couriers. The technologies of the past did not allow for strong privacy, but electronic technologies do.

We the Cypherpunks are dedicated to building anonymous systems. We are defending our privacy with cryptography, with anonymous mail forwarding systems, with digital signatures, and with electronic money.

Cypherpunks write code. We know that someone has to write software to defend privacy, and since we can’t get privacy unless we all do, we’re going to write it. We publish our code so that our fellow Cypherpunks may practice and play with it. Our code is free for all to use, worldwide. We don’t much care if you don’t approve of the software we write. We know that software can’t be destroyed and that a widely dispersed system can’t be shut down.

Cypherpunks deplore regulations on cryptography, for encryption is fundamentally a private act. The act of encryption, in fact, removes information from the public realm. Even laws against cryptography reach only so far as a nation’s border and the arm of its violence. Cryptography will ineluctably spread over the whole globe, and with it the anonymous transactions systems that it makes possible.

For privacy to be widespread it must be part of a social contract. People must come and together deploy these systems for the common good. Privacy only extends so far as the cooperation of one’s fellows in society. We the Cypherpunks seek your questions and your concerns and hope we may engage you so that we do not deceive ourselves. We will not, however, be moved out of our course because some may disagree with our goals.

The Cypherpunks are actively engaged in making the networks safer for privacy. Let us proceed together apace.

Onward.

Eric Hughes <hughes@soda.berkeley.edu>

9 March 1993

More Crypto History