Just wanted to share with the community the following (and I don’t know why I was always suspecting something of sorts would happen). To get the record straight:
- Today I was informed by a separate channel that someone within the ICP community (by the name Brandon Cox) is seemingly accusing me of “stealing” his idea.
- Let me start by saying I have never met this individual, or his associates, didn’t knew of his existence, his work or whatnot until now. Zero.
- It hardly qualifies as stealing what you have absolutely no idea is taking place. That does not mean people that are completely unconnected, professionally or personally, may be working on similar topics at any given time.
For proper visibility, here is the paper it was alleged I “stole” from Native Stack Privacy (NSP): A Comprehensive Framework for Privacy Across All Layers
Let me be firm in saying this is totally baseless and absurd.
The paper by Cox taxonomizes desirable privacy properties, or “6 principles”, asserting that ICP can host full-stack private apps. The “reference implementation” is an E2E encrypted chat using standard cryptography. Besides that it provides no novel cryptographic constructions, no formal security definitions, and no proofs.
By contrast, ICPP offers:
- A novel key agreement protocol (RDMPF, NP-hard from rank deficiency)
- Formal assumptions (cRDMPF, dRDMPF)
- Security proofs (IND-CPA, authorization soundness, and so on)
- Dual-intermediary architecture with certified destruction
- Functional Encryption layer
- Randomized chunking for ledger decorrelation
- Live implementation
The only “overlap” is that both run on ICP (assuming their protocol is live; I can only say ICPP is live).
Claiming that someone stole the idea that “privacy should be native to all layers” is like claiming ownership, say, of “security in depth”. It’s a design philosophy, not an invention. ICPP implements novel cryptography to achieve specific properties that NSP doesn’t even attempt to formalize.
(NB: for some strange reason it reminds me of an exchange I had in the early hours of the morning in this very thread… because the pattern rhymes: assertions without substance, refusal to engage formally, inability to specify when challenged.)
If anything, the NSP paper’s comparison table (pp. 6-7) would place ICPP in a category NSP doesn’t address: cryptographic content protection with formal security guarantees.
To wrap up: the technical overlap is zero. Only common denominator is that we both build on ICP and care about privacy.








