Watchlist 0
WORLD CHAIN · rollup-L2 · QRI 11 · BAND 1 Aware-Only Hybrid FAIL · Stage 0 · Washing 0x

World Chain is the only entry in this batch where your biometric iris hash is a permanent public commitment. Breaking the Groth16-BN254 identity proofs later links seven million humans to their entire on-chain life, decades after they forgot they scanned an orb.

inLinkedIn XPost Scorecard JSON Compare Verified 2026-04-17

Summary

World Chain is Worldcoin's OP Stack L2 tying on-chain activity to biometric World ID via Semaphore (Groth16-BN254) proofs. Identity layer is Shor-breakable. Biometric commitments are lifetime-linkable, so retroactive de-anonymization risk is structurally elevated — a quantum adversary could link 7M+ iris-hashed identities to their entire on-chain history decades later. No PQ program for chain or identity layer.

What the gates say

  • Hybrid: FAIL. No hybrid plan on file.
  • Evidence: PASS. Sources reconstructable by third party.
  • Primitive naming: PASS. Named primitives at every scored sub-level.

Burn-vs-rescue policy on file

none-announced

Seven dimensions

Each dimension scores 0-100 internally; the weighted roll-up produces the QRI on the left. Open a row to read the sub-score detail.

1 Cryptographic Exposure 22 / 100
1a_primitive_inventory 10 / 20

Optimism Superchain L2 with World ID integration; Semaphore is BN254-based ZK identity.

Primitives: ECDSA secp256k1 (OP Stack) · Keccak-256 · Semaphore/Groth16 (World ID proof-of-personhood) · BN254 (ZK pairing)
Evidence:
1b_shor_grover_pq_tag 5 / 20
1c_algorithm_family_diversity 2 / 20

No PQ family.

1d_nist_security_category 2 / 20
1e_implementation_quality 3 / 20
2 HNDL Exposure 14 / 100
2a_active_key_exposure 4 / 20

Worldcoin user base (~7M verified) — each orb-verified user has linkable on-chain footprint.

2b_cold_key_exposure 4 / 20

Young chain (2024); insider allocation 75.7% = large concentrated holder set for HNDL.

2c_signature_longterm_validity 3 / 20

Classical ECDSA + Shor-breakable Groth16 identity proofs. Retroactive PQ attack could de-anonymize World ID linkages.

2d_encryption_confidentiality 3 / 20

TLS; Orb-to-server uses classical KEM.

3 Metadata & Privacy Exposure 15 / 100
3a_tx_graph_visibility 3 / 20

Transparent ledger; World ID tied to biometric iris hash = high-value linkage target.

3b_rpc_mempool_concentration 4 / 20

Tools for Humanity operated sequencer.

3c_cross_chain_bridge_correlation 4 / 20

Canonical OP bridge.

3d_retroactive_deanon_risk 4 / 20

ELEVATED: Semaphore (Groth16-BN254) identity proofs are Shor-breakable; post-PQ adversary could link World ID commitments to on-chain activity retroactively.

4 Migration Architecture 38 / 100
4a_crypto_agility 10 / 20

OP Superchain path; Semaphore identity layer requires independent upgrade.

4b_account_abstraction_key_rotation 11 / 20

ERC-4337 AA available; World App uses smart accounts.

4c_hard_fork_track_record 9 / 20

Inherits Superchain; limited independent.

4d_hybrid_deployment_readiness 8 / 20

No PQ roadmap for chain or World ID. Identity layer is the deeper migration challenge.

5 Deployment Execution 3 / 100
5a_mainnet_pqc_pct 0 / 20

Zero PQC.

5b_pqc_code_in_client 1 / 20

No PQ code.

5c_validator_pqc_adoption 0 / 20

Centralized sequencer.

5d_published_milestones_count 1 / 20

No PQ milestones.

5e_pqc_washing_delta 1 / 20

No claims.

6 Supply Chain Vendor Readiness 5 / 100
6a_wallet 1 / 20
6b_bridge 1 / 20
6c_custodian 2 / 20
6d_rpc_hsm 1 / 20
7 Governance & Coordination 30 / 100
7a_validator_stake_distribution 4 / 20

Centralized sequencer.

7b_upgrade_cadence_under_pressure 8 / 20

Superchain cadence.

7c_named_coordination_lead 10 / 20

Named: Sam Altman, Alex Blania, Tools for Humanity.

7d_adversarial_coordination_precedent 8 / 20

Regulatory pressure in multiple jurisdictions (Kenya, Spain, Argentina) — biometric pushback, not cryptographic.

The X + Y vs Z inequality

X (data shelf life): 10-30 (biometric = lifetime-linkable)

Y (migration time): 6-12 (chain + identity layer both need migration)

Z10 (10% CRQC year): 2036 · Z50 (50%): 2041

Verdict: X+Y > Z (danger).

Four-scenario grid

ScenarioValue preservedPrivacy preserved
quantum never 100% 100%
arrives suddenly pre migration 10% 5%
arrives slowly post migration 50% 15%
arrives slowly mid migration 25% 8%

Peers in the rollup-L2 profile

Order-book view of the 9 chains closest to World Chain by QRI.

Public artifacts used for this scorecard

Each entry below is a sub-score citation. Clicking the link takes you to the public source. A third party should be able to reconstruct every number on this page from these URLs in 48 hours.

Cryptographic Exposure · 1a_primitive_inventory

Optimism Superchain L2 with World ID integration; Semaphore is BN254-based ZK identity.

Supply chain snapshot

wallet World App (Safe) · MetaMask · Rabby 0 PQC roadmaps
bridge Canonical OP bridge · Across · LayerZero 0 PQC roadmaps
custodian Coinbase Custody · BitGo · Anchorage 0 PQC roadmaps
rpc_hsm Tools for Humanity RPC · Alchemy · QuickNode 0 PQC roadmaps

A chain's supply chain cannot migrate faster than its slowest dependency. Zero PQC roadmaps in any of the four categories is a structural blocker, not a lagging indicator.

Analyst notes on the scoring

Stage 0. Retroactive-deanon dimension score (4/10) understates the biometric lifetime-linkage risk; flagged in narrative. Privacy exposure = structurally worst-in-batch outside of shielded chains, because lifetime iris commitments have infinite shelf life.

Scorecard metadata

  • Profile: rollup-L2
  • Scored: 2026-04-17 by layerqu-v2-scoring-agent-5
  • v1 reference: chainscreen-v1-archive
  • QRI raw: 13 · after caps: 11
  • Confidence interval: ±5
  • PQC washing ratio: 0x
  • Burn-vs-rescue: none-announced

Caps triggered

  • mosca_cap_60 (5a=0)
  • sutor_cap_50
LayerQu · World Chain scorecard v2 · reconstructs from public evidence
Methodology · Desk · API