On-chain forensics · reproducible · 2026-07-22
The verifiable footprint of the original Satoshi
Every figure below re-derives from the Bitcoin chain itself — a synced node, or the public bigquery-public-data.crypto_bitcoin mirror. Nothing rests on the word “Satoshi” in anyone’s mouth.
Grade: [forensic], never [cryptographic]. A fingerprint, not a key.
Epistemics
Three tiers of certainty, never blurred.
The genesis block
Height 0, hardcoded in consensus: the Times 03/Jan/2009 headline, and 50 BTC to 1A1zP1eP…DivfNa that the software can never spend.
certain — it is the chain’s first constantThe Patoshi cluster
One dominant early miner, fingerprinted by structure its software leaked into every header (Lerner 2013). ~22.5k of the first ~54k blocks; ≈1.13M BTC; still unspent.
statistical, not cryptographic — a fingerprint, not a signatureBlock 170 → Hal Finney
Satoshi sends 10 BTC to Finney, spending block 9’s Patoshi coinbase. On-chain-certain that the coin moved; “it was Satoshi” rests on tier B plus Finney’s own account.
on-chain certain that block 9’s coinbase was spent to FinneyThe evidence
What the chain says — and it lands on Lerner.
Reproduced from a full pull of blocks 0–60,000. The nonce’s low byte is confined to a Patoshi-specific range; the ExtraNonce leaves a machine-like trail. Three independent numbers fall out — and match the canonical 2013 analysis.
| Quantity | Measured here | Lerner (2013) | |
|---|---|---|---|
| Patoshi blocks (refined) | 22,540 | ~22,000 | match |
| Attributed coins | ~1,126,974 | ~1,100,000 | match |
| Era end (miner exits) | block 54,458 | ~54,000 | match |
| Raw nonce-LSB pass (upper bound) | 28,774 | — |
Refinement
Removing the chance-passers — and checking the answer against a signal the method never saw.
The nonce test is a necessary condition: ~19.5% of ordinary blocks pass it by luck, so the raw 28,774 over-counts. Two independent estimators strip the luck out — and land one block apart.
Dormancy validation. If the labels are real, confirmed-Patoshi coins should sit unspent while the discarded chance-passers spend at ordinary rates. The classifier reads only block headers — it cannot see spends — so this agreement is corroboration, not circularity.
Spend rate by population. Confirmed-Patoshi is 14× more dormant than background, 6.9× more than the discarded set — ordered exactly as the labels predict. (The residual 6.2% is genuine early Satoshi test-spends, block 9 → Finney among them, plus a little boundary contamination. It isn’t zero, and we don’t pretend it is.)
The judge
Is this coin Satoshi’s?
A Patoshi coin is a coinbase output, so a spend consumes it directly — resolve any “old wallet just moved” event back to its coinbase block and get a verdict. Every case below is the tool’s real output.
This is exactly what shows the 2025–26 250-BTC and 2,000-BTC awakenings were not Satoshi — and what would flag it instantly, unambiguously, if the real cluster ever stirred.
The line
No genesis-era or Patoshi key has ever produced a verifying signature. Only that would turn attributable into proven. The ≈1.13M BTC staying silent for fifteen years is itself the strongest statement: the keys don’t speak — and no impostor can make them.