Bitcoin signing mass: Why some UTXOs are more difficult to sign than others

12/27/2023, 2:48:23 AM
This article explores the use of UTXO (Unspent Transaction Output) and the impact of signature size on transaction fees.

What is UTXO signing mass?

While we know signing transactions with too many UTXOs can cause device failures, this general statement still leaves some questions: is there a definite number of UTXOs that would cause a hardware wallet to fail while signing? Can certain UTXOs cause more difficulties than others?

While researching the answers to such questions, I discovered that the time and effort a hardware wallet requires to sign a transaction does not solely depend on the number of UTXOs being sent and how many receiving addresses there will be. It also depends on similar details surrounding the prior transactions that each UTXO came from, a phenomenon I call “signing mass.” I’m not aware of any other publications referencing this concept.

In other words, UTXOs with greater signing mass—explained in more detail below—can be more difficult to sign than others. Even though two UTXOs might use the same amount of data on the blockchain, one can require substantially more processing to sign using a hardware wallet.

This fact extends beyond address types and multisig quorums; one UTXO on a 2-of-3 multisig address can take substantially more effort to sign than another UTXO on that same address (or an equivalent address, and even if the bitcoin amounts and destination addresses are exactly the same).

Why are some UTXOs more difficult to sign?

To understand why two similar-looking UTXOs can have dramatically different signing masses, you have to understand the roundabout method hardware wallets use to verify input amounts without an internet connection and how transaction complexity can differ among the various methods of receiving bitcoin to your wallet.

Input amount safety checks

For any bitcoin transaction, verifying the amounts of the inputs is important; otherwise, large amounts of your bitcoin could accidentally be paid to miners. Why? Because the fees taken by miners are not stated explicitly _in the transaction, but calculated _implicitly by subtracting the value of the outputs from the value of the inputs. Therefore, if there is a big difference between the two numbers, the fee taken will also be large.

As an example, if you had UTXOs totaling 0.8 BTC and used them to send 0.3 BTC somewhere, if you didn’t send the remaining ~0.5 BTC back to yourself as change, the miner of the block can now claim the 0.5 BTC as a part of their earned fees.

Don’t worry! All modern and respected bitcoin tools include automatic safety mechanisms, so making this mistake would be quite difficult (if not impossible). The process can be as simple as searching the blockchain to verify the amount of the inputs and then comparing their total with the sum of the chosen outputs to determine if the fee is reasonable.

But of course, hardware wallets are designed to function independently of the internet, which is especially evident for air-gapped devices. Without the internet or a node connection, the blockchain cannot be observed. Therefore, most hardware wallets must use an alternative, roundabout method to verify input amounts. Essentially, the device not only needs to import the information describing the transaction it will be signing, but it must also import the history of where each input came from.

Put differently, for each UTXO being moved, the device will want to double-check the transaction details directly prior, which led to the creation of that UTXO. If that transaction were complex, it would involve importing more data, which would be reflected in something like the size of a PSBT file. Let’s take a look at transaction complexity.

Transaction complexity from common sources

Most people receive bitcoin to their wallet one of three ways: from an exchange, from a mining pool, or directly from another person in a peer-to-peer (P2P) transaction. Peer-to-peer transactions usually contain very low complexity, and resulting UTXOs will have a relatively tiny signing mass.

However, exchanges and mining pools tend to distribute funds in batches, sending bitcoin to many people at once within the same transaction. These transactions are more complex, and the resulting UTXOs will have a larger signing mass.

I investigated the distribution tendencies for several mining pools and exchanges popular in America, and my findings are presented in the chart below. The number of outputs indicates the number of people typically sent bitcoin within each distribution. A higher number means more transaction complexity and a more considerable signing mass burden for the recipients.

These numbers are approximations at the time of writing and are subject to change according to how each pool or exchange performs distributions in the future.

Notice that the distributions of mining pools are generally larger than exchanges, and certain mining pools such as F2Pool use extraordinarily large distributions. Consequently, if you receive a UTXO directly from an F2Pool payout, that UTXO is more likely to cause certain hardware wallets to have signing difficulties.

A note on SegWit and the BIP 143 vulnerability

In 2017, the segregated witness soft fork occurred, and the signing process was changed for SegWit transactions. A requirement was introduced to include input amounts in the data that users commit to with a signature. As a result, it was believed that any attempt to trick a user or device into inadvertently signing a transaction with absurdly high fees would be prevented. Most hardware wallet manufacturers acted accordingly, removing the input amount safety checks and simplifying the signing process for SegWit transactions.

However, in mid-2020, a vulnerability was found in BIP 143, prompting many hardware wallet manufacturers to reintroduce input amount safety checks for SegWit transactions. At the time of writing, input amount safety checks remain a normal process during a hardware wallet signature. There is some discussion in the community about future changes that could more effectively remove the need for input amount safety checks, such as making fees explicit within each transaction rather than implicit.

How does signing mass affect me?

The variations in signing mass mean that when you are trying to withdraw bitcoin out of your self-custody cold storage wallet, there is some relevance to how you got the bitcoin in the first place. The methods you use to acquire bitcoin can create differences when it comes time to approve transfers.

Anticipating and navigating signing failures

If you hold a UTXO that was moved from a different wallet you control or was received from a peer-to-peer transaction, chances are the transaction was a relatively simple one. The UTXO will have a smaller signing mass and be easier to sign during a future spend. On the other hand, if you received a UTXO directly from a mining pool, or especially a mining pool that makes very large distributions (as shown in the earlier chart), you can expect that UTXO to be harder to sign.

Luckily, if your hardware wallet fails to sign because you are trying to move too many high-mass UTXOs simultaneously, this doesn’t mean your bitcoin is permanently stuck. A quick and easy solution is to break up your transaction into several transactions, moving your bitcoin in chunks. Each chunk will contain only a fraction of the data, and your device will more likely provide a signature successfully.

Another strategy is preventing signing failures in the first place by controlling the number of UTXOs you are holding and the signing mass of those UTXOs. While you can’t change how mining pools and exchanges distribute funds, it is essential to remember that a UTXO’s signing mass is determined by the transaction immediately prior, not any transaction history before that. This means you could receive a UTXO from a mining pool and immediately transfer it to another wallet or address you control, mimicking a peer-to-peer transaction. The resulting UTXO at the new address will have a small signing mass rather than a large one.

Signing mass does not affect transaction fees

It is important to highlight that signing mass only affects the time and effort a hardware wallet requires to sign a transaction, not the network fees you will pay. This is because signing mass is only relevant during the signing process, and will not cause your transaction to take up more data on the blockchain.

This means that you will not necessarily pay more transaction fees if you receive bitcoin from a mining pool such as F2Pool, nor will your transaction fees be decreased by choosing a service that uses fewer outputs for their distributions.

Disclaimer:

  1. This article is reprinted from [unchained]. All copyrights belong to the original author [Tom Honzik]. If there are objections to this reprint, please contact the Gate Learn team, and they will handle it promptly.
  2. Liability Disclaimer: The views and opinions expressed in this article are solely those of the author and do not constitute any investment advice.
  3. Translations of the article into other languages are done by the Gate Learn team. Unless mentioned, copying, distributing, or plagiarizing the translated articles is prohibited.

Share

Crypto Calendar

Project Updates
Etherex will launch the token REX on August 6.
REX
22.27%
2025-08-06
NFT AI Product Launch
Nuls will launch an NFT AI product in the third quarter.
NULS
2.77%
2025-08-06
dValueChain v.1.0 Launch
Bio Protocol is set to roll out dValueChain v.1.0 in the first quarter. It aims to establish a decentralized health data network, ensuring secure, transparent, and tamper-proof medical records within the DeSci ecosystem.
BIO
-2.47%
2025-08-06
AI-Generated Video Subtitles
Verasity will add an AI-generated video subtitles function in the fourth quarter.
VRA
-1.44%
2025-08-06
VeraPlayer Multi-Language Support
Verasity will add multi-language support to VeraPlayer in the fourth quarter.
VRA
-1.44%
2025-08-06

Related Articles

In-depth Explanation of Yala: Building a Modular DeFi Yield Aggregator with $YU Stablecoin as a Medium
Beginner

In-depth Explanation of Yala: Building a Modular DeFi Yield Aggregator with $YU Stablecoin as a Medium

Yala inherits the security and decentralization of Bitcoin while using a modular protocol framework with the $YU stablecoin as a medium of exchange and store of value. It seamlessly connects Bitcoin with major ecosystems, allowing Bitcoin holders to earn yield from various DeFi protocols.
11/29/2024, 10:10:11 AM
What is ORDI in 2025? All You Need to Know About ORDI
Beginner

What is ORDI in 2025? All You Need to Know About ORDI

ORDI in 2025: The leading BRC-20 token with $2.3B market cap and 18M+ inscriptions on Bitcoin blockchain, featuring Layer 2 solutions, DeFi integration, and cross-chain functionality. This mature digital asset ecosystem now represents 25% of Bitcoin block space utilization.
5/29/2025, 1:54:26 AM
Solana Need L2s And Appchains?
Advanced

Solana Need L2s And Appchains?

Solana faces both opportunities and challenges in its development. Recently, severe network congestion has led to a high transaction failure rate and increased fees. Consequently, some have suggested using Layer 2 and appchain technologies to address this issue. This article explores the feasibility of this strategy.
6/24/2024, 1:39:17 AM
The Future of Cross-Chain Bridges: Full-Chain Interoperability Becomes Inevitable, Liquidity Bridges Will Decline
Beginner

The Future of Cross-Chain Bridges: Full-Chain Interoperability Becomes Inevitable, Liquidity Bridges Will Decline

This article explores the development trends, applications, and prospects of cross-chain bridges.
12/27/2023, 7:44:05 AM
Sui: How are users leveraging its speed, security, & scalability?
Intermediate

Sui: How are users leveraging its speed, security, & scalability?

Sui is a PoS L1 blockchain with a novel architecture whose object-centric model enables parallelization of transactions through verifier level scaling. In this research paper the unique features of the Sui blockchain will be introduced, the economic prospects of SUI tokens will be presented, and it will be explained how investors can learn about which dApps are driving the use of the chain through the Sui application campaign.
6/13/2024, 8:23:51 AM
BTC and Projects in The BRC-20 Ecosystem
Beginner

BTC and Projects in The BRC-20 Ecosystem

This article introduces BTC ecological related projects in detail.
1/25/2024, 7:37:36 AM
Start Now
Sign up and get a
$100
Voucher!