Following the September 24 Bitget hack, $387.5 million in stolen assets moved across chains, with portions directed toward THORChain. Bitget CEO Gracy Chen publicly urged the decentralized cross-chain swap platform to refuse service to attacker-linked addresses, stating that the industry was watching. However, THORChain refused to intervene, citing its commitment to being a truly permissionless protocol. Developer Boone Wheeler emphasized that there is firm consensus among nodes regarding this ideal and noted that the system lacks functionality to screen individual addresses or transactions by design.
In contrast, competitor NEAR Intents utilized its automated security layer, SHIELD, to identify more than $50 million in attempted flows linked to the incident. The system stopped $503,000 during execution, though $166,000 passed through. NEAR also waived its share of the recovery bounty. General Manager Alex Shevchenko explained that while NEAR Protocol is permissionless, NEAR Intents incorporates financial integrity measures using public onchain data and anti-money laundering signals. This divergence has sparked intense debate between those who believe protocols have a moral obligation to block stolen funds and those who prioritize cypherpunk ideals of censorship resistance.
The refusal by THORChain to block funds associated with the Bitget hack underscores a fundamental tension in decentralized finance between operational neutrality and ethical responsibility. While THORChain maintains that halting activity is reserved for active protocol issues, critics point to its May halt following a $10 million vault exploit as evidence that emergency controls exist when deemed necessary. This inconsistency complicates the narrative of absolute immutability, suggesting that governance decisions can override technical constraints when internal solvency checks are triggered. The stance taken here reinforces the perception that some protocols prioritize ideological purity over cooperative crime prevention, potentially isolating them from institutional partners who require compliance assurances.
NEAR Intents’ approach highlights an emerging market structure where automated compliance layers coexist with permissionless base protocols. By leveraging AI-driven systems like SHIELD to filter suspicious flows without manual human intervention, NEAR attempts to balance regulatory expectations with decentralization principles. Legal experts suggest such automated mechanisms may still qualify for decentralized protections, offering a template for other platforms facing similar pressures. However, this strategy invites scrutiny regarding whether selective blocking constitutes censorship, potentially exposing these protocols to future demands for broader control. The shift of illicit flows from compliant platforms to resistant ones like THORChain indicates that market fragmentation based on compliance posture could become a defining feature of cross-chain infrastructure.


