Deception, exploited workers, and cash handouts: How Worldcoin recruited its first half a million test users
The startup promises a fairly-distributed, cryptocurrency-based universal basic income. So far all it's done is build a biometric database from the bodies of the poor.

On a sunny morning last December, Iyus Ruswandi, a 35-year-old furniture maker in the village of Gunungguruh, Indonesia, was woken up early by his mother. A technology company was holding some kind of âsocial assistance giveawayâ at the local Islamic elementary school, she said, and she urged him to go.
Ruswandi joined a long line of residents, mostly women, some of whom had been waiting since 6 a.m. In the pandemic-battered economy, any kind of assistance was welcome.
At the front of the line, representatives of Worldcoin Indonesia were collecting emails and phone numbers, or aiming a futuristic metal orb at villagersâ faces to scan their irises and other biometric data. Village officials were also on site, passing out numbered tickets to the waiting residents to help keep order.Â
Ruswandi asked a Worldcoin representative what charity this was but learned nothing new: as his mother said, they were giving away money.Â
Gunungguruh was not alone in receiving a visit from Worldcoin. In villages across West Java, Indonesiaâas well as college campuses, metro stops, markets, and urban centers in two dozen countries, most of them in the developing worldâWorldcoin representatives were showing up for a day or two and collecting biometric data. In return they were known to offer everything from free cash (often local currency as well as Worldcoin tokens) to Airpods to promises of future wealth. In some cases they also made payments to local government officials. What they were not providing was much information on their real intentions.Â
This left many, including Ruswandi, perplexed: What was Worldcoin doing with all these iris scans?Â
To answer that question, and better understand Worldcoinâs registration and distribution process, MIT Technology Review interviewed over 35 individuals in six countriesâIndonesia, Kenya, Sudan, Ghana, Chile, and Norwayâwho either worked for or on behalf of Worldcoin, had been scanned, or were unsuccessfully recruited to participate. We observed scans at a registration event in Indonesia, read conversations on social media and in mobile chat groups, and consulted reviews of Worldcoinâs wallet in the Google Play and Apple stores. We interviewed Worldcoin CEO Alex Blania, and submitted to the company a detailed list of reporting findings and questions for comment.Â
Our investigation revealed wide gaps between Worldcoinâs public messaging, which focused on protecting privacy, and what users experienced. We found that the companyâs representatives used deceptive marketing practices, collected more personal data than it acknowledged, and failed to obtain meaningful informed consent. These practices may violate the European Unionâs General Data Protection Regulations (GDPR)âa likelihood that the companyâs own data consent policy acknowledged and asked users to acceptâas well as local laws.
In a video interview conducted in early March from Erlangen, Germany, where the company manufactures its orbs, Blania acknowledged that there was some âfriction,â which he attributed to the fact that the company was still in its startup phase.Â
âI'm not sure if you're aware of this,â he said, âbut you looked at the testing operation of a Series A company. Itâs a few people trying to make something work. Itâs not like an Uber, with like hundreds of people that did this many, many times.âÂ
Proof of personhood
Two months before Worldcoin appeared in Ruswandiâs village, the San Franciscoâbased company called Tools for Humanity emerged from stealth mode. Worldcoin was its product.Â
The companyâs website described Worldcoin as an Ethereum-based ânew, collectively owned global currency that will be distributed fairly to as many people as possible.â Everyone in the world would get a free share, the company suggestedâif they agreed to an iris scan with a specially designed device that resembles a decapitated robot head, which the company refers to as the âchrome orb.â
The orb was necessary, the website continued, because of Worldcoinâs commitment to fairness: each person should get his or her allotted share of the digital currencyâand no more. To ensure there was no double-dipping, the chrome orb would scan participantsâ irises and several other biometric data points and then, using a proprietary algorithm that the company was still developing, cryptographically confirm that they were human and unique in Worldcoinâs database.Â
âIâve been very interested in things like universal basic income and whatâs going to happen to global wealth redistribution,â Sam Altman, Worldcoinâs cofounder and the former President of Silicon Valley accelerator Y Combinator, told Bloomberg, which first reported on the company last summer. Worldcoin was intended, he explained, to answer the question âIs there a way we can use technology to do that at a global scale?âÂ
The company was just getting startedâits aim is to garner a billion sign-ups by 2023.
In the same article the then 27-year-old Blania, who joined Worldcoin straight out of a physics masters program at Caltech, added that âmany people around the world donât have access to financial systems yet. Crypto has the opportunity to get us there." (Blania and others have used âWorldcoinâ to refer to the company as well as the currency; we do the same here.)Â
But beyond these do-gooder intentions, Worldcoin would also solve key technical problems for Web3, the much-hyped, blockchain-powered third iteration of the internet, where data and content could be decentralized and controlled by individuals and groups rather than a handful of tech companies.Â
Giving âownership in this new protocol to everyoneâ would be the âfastestâ and âbiggest onboarding into crypto and Web3â to date, Blania told MIT Technology Review in an interview, addressing one of Web3âs major challenges: a relative dearth of users.Â
Additionally, by biometrically confirming that an individual is human, Worldcoin would solve another âvery fundamental problemâ in decentralized technologies, according to Blania: the risk of so-called Sybil attacks, which occur when one entity in a network creates and controls multiple fake accounts. This is particularly dangerous in decentralized networks where pseudonyms are expected. Coming up with a truly Sybil-resistant proof of personhood has thus far been difficult, and this is seen as another barrier for mass Web3 adoption.




Worldcoin has done field testing in 24 countries; (from left to right) these promotional images were taken in Sudan, Indonesia, Chile, and Kenya.
With these two solutions, Worldcoin could become âan open platform that everyone can use [for] both the proof-of-person part and the distribution part,â Blania said. Therein lies Worldcoinâs promise: if it succeeds, this protocol could become the universal authentication method for a whole new generation of the internet. If that happens, the currency itself could become far more valuable. âInvestors hope that the Worldcoin project brings value to the world and, as a result, that this equity and/or these tokens will appreciate in value,â the company said in an emailed statement.
This may be why some of Silicon Valleyâs biggest names, in addition to Altman, are pouring money into it; Andreessen Horowitz recently led a $100 million investment round that tripled the startupâs valuation, from an already heady $1 billion to $3 billion.Â
Look into the orb
By the time we spoke to Blania in March, Worldcoin had already scanned 450,000 eyes, faces, and bodies in 24 countries. Of those, 14 are developing nations, according to the World Bank. Eight are located in Africa. But the company was just getting startedâits aim is to garner a billion sign-ups by 2023.Â
Central to Worldcoinâs distribution was the high-tech orb itself, armed with advanced cameras and sensors that not only scanned irises but took high-resolution images of âusersâ body, face, and eyes, including usersâ irises,â according to the companyâs descriptions in a blog post. Additionally, its data consent form notes that the company also conduct âcontactless doppler radar detection of your heartbeat, breathing, and other vital signs.â In response to our questions, Worldcoin said it never implemented vital sign detection techniques, and that it will remove this language from its data consent form. (As of press time, the language remains.)Â
The biometric information is used to generate an âIrisHash,â a code that is stored locally on the orb. The code is never shared, according to Worldcoin, but rather is used to check whether that IrisHash already exists in Worldcoinâs database. To do this, the company says, it uses a novel privacy-protecting cryptographic method known as a zero-knowledge proof. If the algorithm finds a match, this indicates that a person has already tried to sign up. If it does not, the individual has passed the uniqueness check and can continue registration with an email address, phone number, or QR code to access a Worldcoin wallet. All of this is meant to occur in seconds.Â
Worldcoin says that biometric information remains on the orb and is deleted once uploadedâor at least it will be one day, once the company has finished training its AI neural network to recognize irises and detect fraud. Until then, beyond vague descriptions like âpersonal dataâŠsent via secure, encrypted channels,â itâs unclear how this data is being handled. âDuring our field-testing phase, we are collecting and securely storing more data than we will upon its completion,â the blog post states. âWe will delete all the biometric data we have collected during field testing once our algorithms are fully-trained.âÂ
In response to our questions just before this article went to press, Worldcoin said the public version of their system would soon eliminate the need for new users to share any biometric data with the companyâthough it hasnât explained how this will work.
A useless IOU
But we do know how onboarding works. To get Worldcoin into the smartphones of new users, the company contracts with local âorb operatorsâ to manage signups for their countries or regions.Â
Operators apply for the job and are interviewed and approved by the Worldcoin team, though Anastasia Golovina, a company spokesperson, emphasized in an email that operators âare independent contractors, not Worldcoin employees.â As such, they work without contracts or guarantee of payment, instead receiving commission for each personâs biometric data that they collect. However, Golovina added, they must âcomply with local laws and regulations, including local labor laws.â
These country-level operators receive their commission in the stablecoin Tether. Stablecoins are a type of cryptocurrency whose value is pegged to a traditional currency, often the US dollar. They determine the rates they pay their subcontractors (typically in local currency), as well as the working conditions (full-time, part-time, or temporary gig work.) Both country-level and subcontracted orb operators are incentivized by commission-based payment structures to register as many people as quickly as possible.Â
On the other side, new users currently earn at least $15 worth of Worldcoin for submitting to the biometric scan, and $5 more when they log in to their Worldcoin wallet, though the total amount available has since changed to $25 for later recruits. Some users receive the sum all at once, for others it vests at a rate of $2.50 per week. Blania says that differences are meant to test out the most effective incentives. Either way, Worldcoin isnât a stablecoin, and since the currency has not yet launched, the company âdo[es] not yet know how many WLD tokens would be equivalent to USD $20,â it noted in a written statement.
To understand user incentives, some people were given the option to receive $20 worth of Bitcoin instead, effectively allowing them to cash out. Worldcoin said that it found its âmost engaged users elected to hold on to their WLD,â though most of our interviewees said the opposite.
But with the ability to cash out ending last fall, for now the promise of $20 or $25 worth of Worldcoin amounts to an IOU from the company. Any tokens users may have in their digital wallets are, for all intents and purposes, worthless.Â
Taking a chance
Worldcoinâs users joined for a myriad of reasons.
âOut of curiosityâ was a common refrain. Because the orb operator âseemed niceââor happened to be their brother, cousin, or classmateâwas another. Some hoped to get in early on what could become the next Bitcoin. Others had lost jobs or income during the pandemic. Some became desperate as civil war threatened to reignite around them. Most just wanted the free moneyâat least one only wanted to buy lunch. Many suspected it was a scam, though few could risk passing it up in case it was not.Â
Ruswandi fit into several of these categories. He had lost much of his work as a furniture maker during the pandemic and spent his free time trading stocks and cryptocurrencies and frequenting crypto-related message boards and exchanges.Â
âI was curious and thought it wouldnât hurt to try,â he recalled, adding that the money was attractive given his reduced income.
But he quickly had doubts. Neither the company representatives on site nor the village officials could answer even basic questions about Worldcoin. After doing more research online and coming up empty, he came to conclude it was a scam. He believed the mysterious giveaway was a mass data collection effort disguised as some kind of secret, offline airdropâa tactic in which cryptocurrency projects release free tokens to encourage adoption.
After all, many of his neighborsâ understanding of the internet was limited to the Facebook app pre-installed on their smartphones, so before prospective users were even able to receive the new currency, Worldcoin representatives âfirst had to help many residents in setting up emails [and] logging in to the web,â Ruswandi recalled. If it was about attracting users to a new cryptocurrency, he wondered, âwhy did Worldcoin target lower-income communities in the first place, instead of crypto enthusiasts or communities?âÂ
The biometrics question
When Worldcoin made its âWeâre here!â announcement last October, it encountered immediate backlash.Â
As NSA whistleblower Edward Snowden put it in a tweet thread, âDonât catalogue eyeballs. Donât use biometrics for anti-fraud. In fact, donât use biometrics for anything. The human body is not a ticket-punch.âÂ

Many doubted Worldcoinâs privacy protocols, especially since the company had yet to issue a white paper or open its code for outside evaluation. âThis looks like it produces a global (hash) database of people's iris scans (for âfairnessâ), and waves away the implications by saying âwe deleted the scans!â Yeah, but you save the *hashes* produced by the scans. Hashes that match *future* scans,â Snowden tweeted.
There were also questions about hardware security. Jeremy Clark, an associate professor at the Concordia Institute for Information Systems Engineering that focuses on applied cryptography, questions the security of the orb: âThe machine itself will have some security protections,â he says, âbut none of that technology is perfectly secure. So it's usually an economic questionâŠif this project is as successful as they want it to be, then it's going to become more profitable to try and tackle.â
Others took issue with the companyâs purported focus on fairness given that 20% of the coins had already been allocated: 10% to Worldcoinâs full-time employees, and another 10% to investors, like Andreessen Horowitz.Â
Additionally, many in the blockchain field disagreed with the underlying premise of what Worldcoin was trying to build: creating one identity across Web3 was anathema to a movement that had turned to blockchain, decentralized finance, and DAOs (âdecentralized autonomous organizationsâ) for the express purpose of not being known.
Others remain unconvinced that Worldcoin can actually reach everyone in the worldâand instead, serves as a distraction from ongoing work to create new identity paradigms. Identity expert Kaliya Young, while declining to comment on Worldcoin specifically, says that âitâs common for companies to claim that âif everyone in the world was in our system, everything would be fine.â Newsflash: everybody is not going to be in your system, so letâs move on and talk about how we solve problemsâ in online identity.
For Blania and his team, the criticism misses the mark. âBig parts of our team have had backgrounds in cryptoâŠso we care about this [privacy] a lot,â he told MIT Technology Review. âI fully understand the concern,â he said, but he thinks itâs more âemotional gut reactionâ than âobjective criticism.â What the critics were missing, he added, was just how good Worldcoinâs protocol would be at protecting privacy once complete.Â
Stephanie Schuckers, the director of the Center for Identification Technology Research at Clarkson University, says thatâs not outside the realm of possibility, as biometric technology has made a number of recent advances. One of the newest trends is âtemplate security,â which uses cryptography to make a transformation of your biometric data. âWhen you store it, if it were stolen, it canât be reverse-engineered back to your original biometrics,â she says.Â
But the reason that it has yet to be commercialized, she adds, is that cryptographic transformation often leads to âperformance degradation.â Instead of matching the new biometric data to an existing biometric sample, template security matches a computer algorithmâs interpretation of the data, via some kind of hash or code, to another stored code. This adds room for error, Schucker says, making it âmore difficult to match biometrics in this encrypted space,â though she adds that recent advances in template security have addressed some of those shortcomings.Â
Template security sounded like a possibility for what Worldcoin was doingâthough Schucker cautioned that without seeing their code, or more detail beyond Worldcoinâs blog posts, it was hard to say for sure. Worldcoin has promised to open source its code, including repeating to MIT Technology Review on multiple occasions that this would occur âwithin the next few weeksââsince we first contacted the company in February.Â
Besides, the company added in a statement, âIt is important to emphasize that we collect data not for the purpose of profiting from it or surveilling our users, like many other tech companies out there. Rather, our goal is to use the data for the sole purpose of developing our algorithms to minimize fraud and enhance user privacy.â
Reeling them in
Representatives of Worldcoin used a range of questionable tactics and enticements to bring in new users, according to many of the people MIT Technology Review spoke to.
When operations began in Sudan last March, the operators found it hard to âexplain the concept of digital currencies to people who donât even have emailsâ, according to Mohammad Ahmed Abdalbagee, one of Sudanâs four former orb operators. So instead they ran an AirPod giveaway contest to encourage registration that resulted in some 20,000 sign-ups.Â
At an Islamic high school in Indonesiaâs West Java province, Worldcoin applied to teach a cryptocurrency workshop. The schoolâs student activity coordinator, Muhammad Hilham Zein, read the application and recommended it for approval on the understanding that it was âto share knowledge on cryptoâŠnot to encourage students to invest in digital currency.â
"Why did Worldcoin target lower-income communities in the first place, instead of crypto enthusiasts or communities?"
But attendeesâat least one of whom was 15, which violates Worldcoinâs own terms of useâas well as our reporterâs first-hand observations tell a different story. During the 45-minute sessions, Worldcoin staff were too busy registering the dozen or so students, helping them download the app and sign up for emails, and finally scanning their biometrics, to provide information on cryptocurrency, Worldcoin itself, or how participants could give or take away consent. (Students did, at least receive their allotment of Worldcoin, which would vest weekly).Â
More recently, in roughly 20 villages in West Java that hosted recruitment events, many new users, like Iyus Ruswandi, were attracted by giveaways.
âIt was held during the pandemic, where the government usually handed out social assistance packages,â explained Ece Mulyana, the principal of an elementary school madrasa who was informed, the night before, that his school was to be used as a Worldcoin registration site. Because the instructions came from a higher-level officialâAde Irma, the sub-district governance head, who was helping Worldcoin coordinate the village registration drives, âI couldnât refuse the request,â Mulyana said.Â
Mulyana says that Irma paid him a fee of 2,000 IDR (around 14 US cents, at the time of writing) for each person successfully scanned. Mulyana estimates that 170 made the cut, for a total of 340,000 IDR (roughly $23.80, just under 10% of the average monthly pay of a government worker ).Â
Heni Mulyani, the sub-district leader who approved the events and Irmaâs boss, said the money was provided âfor coffee and cigarettes,â a euphemism for gratuities given to government officials to facilitate desired actions. She said none of the money paid went towards site rentalâbut, she added, âwe assure you itâs not coming from the village fund or budget.âÂ

Instead, the money came from a company called PT Sandina Abadi Nusantara, cofounded by a man named Muhammad Reza Ichsan, who happens to be Worldcoinâs âbest-performing operatorâ (according to Worldcoinâs launch blog post), and his mother. The company was the legal entity through which Worldcoin Indonesia conducted its activities; it was Ichsanâs motherâs job to reach out to local government officials to coordinate recruitment.Â
Ichsan has told MIT Technology Review that âwe donât pay the village, but we have an operational fund for people who helped us assemble the public in the field.â
Even if Mulyani had not misused village funds, these gratuities areâwith rare exceptionsâ illegal under Indonesiaâs anti-corruption and anti-bribery laws, with potential criminal penalties for both the giver and receiver.Â
In response to questions about payments to village officials, Worldcoin representatives said they were unaware of the incident, called it âisolated,â and that they have launched an investigation to learn more. While they could not yet draw conclusions, Golovina wrote, âIt appears possible that some or all of these payments may have been for bona fide operating expenses, for example, fees required to set up operations in a school or other facility, or to pay for permits or licenses required to operate in certain locations.â This stands in contradiction to both the officialâs and their orb operatorâs descriptions.
Worldcoin also called the other examples we put to them, including the AirPod giveaway in Sudan and the deception of school officials in Indonesia âindependent and isolated efforts by local Orb Operators,â and added that âwe are wholly focused on incentivizing Operators to sign up engaged users who are excited about using Worldcoin.â
For their part, villagers were not told that at least some of their officials were being paid to promote Worldcoin; in fact, many thought the event was run by the government itself, as Mulyana, the school principal, recalled. âWe have to explain to them that it was not a government program,â he saidâthat âWorldcoin is a foreign company who came and needed help from the village staff.â
Some villagers now doubt that they will receive any money at all now that late January, the time when they were told Worldcoin representatives would return to the village to hand out funds, has come and gone. Nor has the ability to trade Worldcoin from the wallet appeared, for those digitally savvy enough to navigate the app.
Operating blind
The mixed messages and misinformation werenât necessarily intentional. The orb operators we spoke to often mentioned how little information they received from the Worldcoin representatives who recruited them, even as they were made acutely aware that their payment was tied to the number of people they could sign up. (Worldcoin said that it provides its country-level orb operators with a code of conduct, which sub-operators must also abide by, and that it is moving away from commissions based on number of sign-ups.)Â
Bryan Mtembei was one such operator. A civil engineer who recently graduated from college in Nakuru, Kenyaâs fourth-largest city, Mtembei freelanced for Worldcoin after he was scanned on campus last September.Â
He wishes that he had received âa brief training or basics about Worldcoin.â Instead the only instruction he got was to âbring more people in to get yourself more money,â he said. âThe rest was up to my social marketing skills.âÂ
So he did his best to answer new usersâ questions, with the most frequent being about privacy: Mtembei estimates that roughly 40% of the individuals he approached had concerns about sharing their biometric data. When he initially expressed similar concerns, he was assured by a representative that all his questions were addressed in the Worldcoin âwhite paper.â No such document exists. According to the company, this is by designâpeople would be unlikely to read âa long, highly technical academic-style paper,â it said, and its shorter blog posts could be thought of as white papers. Ultimately, Mtembei's need for money overrode his concerns; he says that he signed up between 150 and 200 people, at 50 KS (44 US cents) per scan.Â

And he wasn't alone. Willis Okach, a college student in Nairobi recruited, like Mtembei, to become an orb operator after his own scan, also got involved because of the money. âYou don't have any and someone is offering you some,â he explained, adding that he thinks Worldcoin âfeels that students donât have a lot of money so they will sign up.â For his two days of work, Okach signed up 50 people and earned 100 KS (USD 0.88) for each set of biometric data that he brought in.Â
According to Golovina, the Worldcoin spokesperson, âall users who sign up during field testing are provided full disclosure about what is being collected and how that data is used and are required to provide their consent before theyâre allowed to sign up. Any individual who does consent to our collection and use of their biometric data may revoke their consent at any time and this data will be deleted.â
But of the people we interviewed, none were explicitly toldâor, in the case of orb operators, told othersâthat they were âtest users,â that photographs and videos of their faces, and 3D body maps were captured and being used to train the orbâs âanti-fraud algorithmâ to âdifferentiate between people,â that their data was treated differently from the way othersâ would be handled later, or that they could ask for their data to be deleted.Â
Ăngel Rodriguez, a security guard for the Santiago Metro in Chile, recalled checking a box in the Worldcoin app agreeing to the terms of service, but recalled the instructions being in English, a language that he does not read. In addition, the app, with its link to the data consent forms, was not available until âlate 2021,â according to Worldcoin, at which point, field testing had been going on for at least a year.Â
Sometimes, new users were asked to provide additional personal data, which Worldcoin claims it never requests. Almost all of the people we spoke to were asked to provide email addresses to log into their wallets (even after Worldcoin introduced a QR code for sign-ins). Some were asked for phone numbers as well.Â
Golovina has denied in multiple email statements that emails or phone numbers were required for sign-up, though âwe do make certain features available to users who choose to provide their phone number or email address, like the ability to send and receive Worldcoin. But things like this will always be optional.â Worldcoin did not explain what else users could do with the token without the ability to send or receive it.Â
In Nairobi, meanwhile, several students said that orb operators took a photo of their national ID cards to confirm, as Okach recalled, that he was ânotâŠa robot.â Worldcoin said that it has never requested national identification documents from users, though they do request it from their orb operators.Â
When we shared these comments with interviewees, they did not recognize their own experiences. Mtembei emphasized that personal details were never optional, and there was no way to sign up at his orb without both email and phone. âThat CEO is lying,â he said (mistakenly attributing Golovinaâs statement to Blania.)
Mohammad Ahmed Abdalbagee, one of the four orb operators hired in Sudan, added that it was his teamâs efforts that convinced Worldcoin to add phone numbers as a sign-in method in the first place. âBefore they started in Sudan, they used the email as the main identifier, but we told them that this wouldnât work in Sudan. Many college students donât even have emails, they use their phones to register in social media,â he said.Â
Crypto-colonialism
Researchers that study the tech sectorâs relationship with the global south were concernedâbut not surprisedâby Worldcoinâs behavior.Â
âIt's a race to see who gets the most data in this AI-driven economy,â says Payal Arora, a digital anthropologist and author of The Next Billion Users: Digital Life Beyond the West. Stronger data protection laws in Europe and the United States mean that the most ambitious entrepreneurs in those regions canât get all the training data that they need from their own populations, she says, so they have to look to the developing world.Â
In fact, according to its launch blog post, Worldcoin is unavailable in either the United States or China due to regulatory constraints, while Bloomberg reported that it has also shut down field tests in other countries, including Turkey and Sudan, for similar reasons. Worldcoin has, however, signed up a number of users in the US at demos held at cryptocurrency conferences, though the company does not consider its US activities to be a form of field testing.
Itâs just cheaper and easier to run this kind of data collection operation in places where people have little money and few legal protections.
Pete Howson, a senior lecturer at Northumbria University who researches cryptocurrency in international development, categorizes Worldcoinâs actions as a sort of crypto-colonialism, where âblockchain and cryptocurrency experiments are being imposed on vulnerable communities essentially becauseâŠthese people canât push back,â he told MIT Technology Review in an email.
What makes the crypto version even more harmful than other forms of data colonialism is that decentralization, the core tenet of blockchain, makes for âvery limited accountabilityâŠwhen things go wrong,â Howson explained. âYouâll often hear this phrase âDo Your Own Researchâ, or DYOR, because these guys donât care much for rules and regulations.â
But inequities in information and internet access make that âdo your own researchâ ethos all but impractical for many people in developing regions. Similarly, huge economic disparity means that in Kenya, say, the promise of just under half a US dollar could be a compelling incentive for someone to give up their biometric data, whereas in Norway or the US, such an offer wouldnât go far.Â
Simply put, itâs just cheaper and easier to run this kind of data collection operation in places where people have little money and few legal protections.Â
Data lapses and policy holes
Although much of Worldcoinâs field testing has been happening in developing countries, the company stressed that it is also active in developed countries, including several in Europe. âWorldcoin has always tried to conduct field tests in a sample of countries around the globe that would be representative of the world as a whole,â the company told us.
This presents its own challenges. In collecting, controlling, and processing the personal data of EU-defined âdata subjectsââthat is, any person within the European Union, including citizens, residents, and potentially visitors whose data is being collectedâWorldcoin is subject to the European Unionâs General Data Protection Regulation (GDPR).
Enacted in 2018, the GDPR requires that data subjects be fully informed about why their data is collected, how it will be used, who will be processing it, where it will be transferred, how they can erase it, and how they can stop its processing. Failing to sufficiently safeguard data can lead to fines of up to 4% of global revenue or 20 million euros, depending on the severity of the infraction. Further, GDPR applies outside of Europe if a company collects or processes the personal data of European data subjects. So a company registered in Delaware and headquartered in San Francisco, like Worldcoin, is not necessarily exempt.Â
That is, however, exactly what Worldcoin has claimed in its data consent form, whichâuntil MIT Technology Review submitted its list of questionsâasked users to accept the following statements:Â
- âwe [Worldcoin] voluntarily comply with the GDPR as a matter of policyâÂ
- âwe have not adopted a board-approved data privacy and security policy describing the means and the methods by which we plan to protect your Data to meet the standards prevalent in the GDPRâÂ
- âthere is a possibility that our policies and procedures will not be sufficient to meet GDPR requirementsâÂ
- âit may be more difficult to assert your privacy rights in court in the United States if we do not complyâÂ
This policy tries to create âcarve-outs,â says Marietje Schaake, the international policy director at Stanford Universityâs Cyber Policy Center and a former Member of the European Parliament, who reviewed the document. Exceptions, she adds, are not possible under the GDPRâand besides, the fact that Worldcoin has a German subsidiary already subjects it to the GDPR.
âAs an EU citizen, you have the right to challenge it,â Schaake says, referring to any potential violation. Those challenges would be reviewed by European data protection authorities and eventually argued in European courts rather than American ones, as Worldcoinâs policy suggests.Â
Worldcoin said that it is fully compliant with the GDPR, and has registered with the Bavarian Data Protection Authority. It added that it employs a data protection officer, and that it has conducted a data privacy impact assessmentâthough it has declined to make either the officer or the assessment available for public scrutiny. Worldcoin added that the statements in their consent policy âwere previously included in an abundance of cautionâŠThey no longer appear in the latest version of our Data Consent Form.â As of publication, however, the language still remains online.
For Aida Ponce del Castillo, a researcher at the European Union Trade Institute, who studies regulations for emerging technology and serves as her organizationâs data protection officer, this lack of transparency is unjustified. âDPIA are not confidential business information,â she told MIT Technology Reviewâand while publication is not mandatory, she pointed to European Commission recommendations that companies âconsider publishing at least parts, such as a summary or a conclusion.âÂ
The Bavarian Data Protection Authority has yet to respond to MIT Technology Reviewâs request to confirm the companyâs registration. Â
"That's manipulation"
Beyond the ethical questions, though, lie more practical ones, like: how well does Worldcoin actually work?Â
For some test users and orb operators on the ground the answer has been, not well at all.Â
Sometimes, this was due to issues with the orb. In Sudan, local orb operator Abdalbargee says that it would take as many as six attempts for the orb to recognize someoneâs face. âActually it took my friend an entire week for the device to recognize his iris,â he adds.Â
Orbs were also prone to malfunctions, slowing down recruitment processes and requiring repair in Germany. When Buzzfeed News found similar orb malfunctions in a recent investigation, Worldcoin used language that it has repeated with us: calling one particularly egregious case an âisolated outlier.â Â
Meanwhile, the transition from a web-based wallet to an app-based wallet has caused a number of users to appear to lose either their entire accounts or all of their coins. For others, the app has proved buggy, draining battery life or leading them into in a spiral of loading and reloading.Â
Rodriguez, the Chilean security guard, has been trying to resolve his wallet issues since shortly after he was scanned. After signing up in February, and being asked to input his email, phone number, and use a QR code, the app was creating such performance issues for his phone that he deleted it entirely. When he tried to re-download the app, he found that his username no longer existed.Â
To fix it, he was told by a local orb operator, he would have to find the orb and re-scan his biometric data. But if Worldcoin works as the company claims, re-scanning his iris would simply result in the orb linking his iris with his old iris hash. In other wordsâand as Worldcoin has subsequently confirmedâ thereâs no way to recover an account once itâs lost.
Then there are the instances of identity spoofing that the orb has been unable to detect. In mid-2021, one businessman in Indonesia was able to register and access the wallets of over 200 users after they had been scanned and verified as human, and transfer out their contentsâheld in Bitcoin at the time. Worldcoin says that this occurred when the wallet was still accessible via a web log-in, rather than a mobile app, and that âsince transitioningâŠwe have not detected this type of fraud.âÂ
Meanwhile, those who fear that the whole thing may have been a scam want to know what theyâve lost. â50 KS is not enough to give an eyeball away,â says Okach, the university student in Nairobi that spent a weekend recruiting others to Worldcoin. âThatâs manipulation, taking advantage of students without clear clarification about what it is they are doing or what they want.â
Forget all those people
When we began reporting this story we noticed that three of the five countries initially cited as case studies for successful field testingâIndonesia, Sudan, and Kenyaâwere classified as low or lower-middle income by the World Bank. The power and economic differentials seemed ethically fraught, so we began digging.Â
We wanted to know: what was it like to serve as an early user in this global crypto experiment? What did the participants actually understandâor what were they toldâabout cryptocurrency, Worldcoin, and the ramifications of giving up their biometric data? Did they provide informed consentâand what would that even look like in this context? And, ultimatelyâsharing the same question voiced by many of our intervieweesâwhat were the iris scans really for?



Left to right: Ruswandiâs neighbors Sadili, Solihin (a community leader), and Eli were among the 170 villagers scanned.
In the end, it was something that Blania said, in passing, during our interview in early March that helped us finally begin to understand Worldcoin.Â
âWe will let privacy experts take our systems apart, over and over, before we actually deploy them on a large scale,â he said, responding to a question about the privacy-related backlash last fall.Â
Blania had just shared how his company had onboarded 450,000 individuals to Worldcoinâmeaning that its orbs had scanned 450,000 sets of eyes, faces, and bodies, stored all that data to train its neural network. The company recognized this data collection as problematic and aimed to stop doing it. Yet it did not provide these early users the same privacy protections. We were perplexed by this seeming contradiction: were we the ones lacking in vision and ability to see the bigger picture? After all, compared with the companyâs stated goal of signing up one billion users, perhaps 450,000 is small.
But each one of those 450,000 is a person, with his or her own hopes, lives, and rights that have nothing to do with the ambitions of a Silicon Valley startup.Â
Speaking to Blania clarified something we had struggled to make sense of: how a company could speak so passionately about its privacy-protecting protocols while clearly violating the privacy of so many. Our interview helped us see that, for Worldcoin, these legions of test users were not, for the most part, its intended end users. Rather, their eyes, bodies, and very patterns of life were simply grist for Worldcoinâs neural networks. The lower-level orb operators, meanwhile, were paid pennies to feed the algorithm, often grappling privately with their own moral qualms. The massive effort to teach Worldcoinâs AI to recognize who or what was human was, ironically, dehumanizing to those involved.Â
When we put seven pages of reporting findings and questions to Worldcoin, the companyâs response was that nearly everything negative that we uncovered were simply âisolated incident[s]â that ultimately wouldnât matter anyway, because the next (public) iteration would be better. âWe believe that rights to privacy and anonymity are fundamental, which is why, within the next few weeks, everyone signing up for Worldcoin will be able to do so without sharing any of their biometric data with us,â the company wrote. That nearly half a million people had already been subject to their testing seemed of little import.
Rather, what really matters are the results: that Worldcoin will have an attractive user number to bolster its sales pitch as Web3âs preferred identity solution. And whenever the real, monetizable productsâwhether itâs the orbs, the Web3 passport, the currency itself, or all of the aboveâlaunch for its intended users, everything will be ready, with no messy signs of the labor or the human body parts behind it.
Additional reporting by Lujain Alsedeg and Antoaneta Roussi
Correction: This story has been corrected to note that GDPR fines can be up to 4% of global revenue, a previous version misstated the percentage, and updated to clarify GDPR regulations apply to personal data protection of European subjects.
Deep Dive
Humans and technology
Human-plus-AI solutions mitigate security threats
With the right human oversight, emerging technologies like artificial intelligence can help keep business and customer data secure
Merging physical and digital tools to build resilient supply chains
Using unique product identifiers and universal standards in the supply chain journey, the whole enterprise can unlock extended value
Unlocking the value of supply chain data across industries
How global standards and unique identifiers are turning supply chain data into a game-changer
Transformation requires companywide engagement
Employees need to be heard for leaders to overcome the hurdles of organizational change
Stay connected
Get the latest updates from
MIT Technology Review
Discover special offers, top stories, upcoming events, and more.