Money Laundering
Crypto Mixing, Bridges and Cross-Chain Transfers in PMLA Cases
A mixer interaction, bridge transaction, decentralised swap or movement across multiple blockchains may be relevant investigative evidence, especially where ED alleges concealment or layering. Complexity of movement is evidence to analyse. It is not a substitu
PMLA • CRYPTO • MIXERS • CROSS-CHAIN BRIDGES • WALLET CLUSTERING • BLOCKCHAIN FORENSICS
Mixers • Bridges • Chain Hopping • Wallet Attribution • Self-Custody • Exchange KYC • Expert Rebuttal
Research updated: 10 August 2026 | By Advocate Ankit Kumar Singh
Direct Answer: Does Moving Crypto Through a Mixer or Cross-Chain Bridge Prove Money Laundering?
No.
A mixer interaction, bridge transaction, decentralised swap or movement across multiple blockchains may be relevant investigative evidence, especially where ED alleges concealment or layering.
But the PMLA case still has to establish the statutory chain:
SCHEDULED OFFENCE → PROCEEDS OF CRIME → CRYPTO TRANSACTION → WALLET ATTRIBUTION → CONTROL / KNOWLEDGE → SECTION 3 ROLE
Complexity of movement is evidence to analyse. It is not a substitute for proving ownership, custody, knowledge or the proceeds-of-crime nexus.
Why Cross-Chain Crypto Investigations Are Technically Difficult
A simple transaction may involve only:
WALLET A → WALLET B.
A modern DeFi trail may instead involve:
ETHEREUM → DEX → USDT → BRIDGE → ARBITRUM → SWAP → USDC → BRIDGE → ANOTHER NETWORK → EXCHANGE
The economic value may remain substantially the same even though:
- the network changes;
- the token changes;
- the wallet changes;
- a smart contract intervenes;
- a bridge locks/burns an asset and releases another representation.
The forensic task is therefore not merely to count transactions. It is to reconstruct economic continuity.
What Is Chain Hopping?
Chain hopping refers broadly to moving virtual assets across different blockchain networks.
FATF's 2026 DeFi work identifies chain-hopping, cross-chain bridges, decentralised exchanges and mixers among techniques that can make illicit flows more complex and opaque.
However, the same technologies also have legitimate functions, including:
- accessing liquidity;
- reducing network fees;
- moving assets between DeFi protocols;
- portfolio management;
- arbitrage;
- protocol migration.
The defence question is therefore:
WHY WAS THIS PARTICULAR TRANSFER MADE?
The Cross-Chain Transaction Matrix
| Stage | Chain | Asset | TxID | Purpose |
|---|---|---|---|---|
| Source | Ethereum | USDT | _____ | _____ |
| Bridge | Ethereum → Arbitrum | USDT | _____ | _____ |
| Swap | Arbitrum | USDT → USDC | _____ | _____ |
Cross-Chain Bridges and the Double-Counting Problem
One of the most important expert-review points is whether the alleged proceeds are being counted more than once.
Suppose:
₹1 crore equivalent of USDT is locked on Chain A.
A corresponding representation is released on Chain B.
The economic value may still be approximately ₹1 crore, not ₹2 crore.
BRIDGED REPRESENTATION SHOULD NOT BE COUNTED AS NEW POC MERELY BECAUSE IT APPEARS ON A SECOND BLOCKCHAIN.
The complete bridge mechanism must be reconstructed before valuation.
What Is Wallet Clustering?
Blockchain-analysis software may group addresses into a cluster where its methodology concludes that the addresses are probably associated with the same service, entity or controller.
Clustering can be useful.
But:
CLUSTER ≠ LEGAL IDENTITY.
The defence should ask:
- What heuristic generated the cluster?
- Is the methodology disclosed?
- Can it be independently reproduced?
- Does the cluster represent an exchange?
- Does it represent a smart contract?
- Does it represent pooled custody?
- Could multiple unrelated users contribute to the cluster?
FATF 2026: Blockchain Analytics Has Recognised Limits
FATF's 2026 DeFi report explains that blockchain analytics can assist law enforcement in tracing multi-chain flows and mapping wallet relationships.
But it also recognises limitations where:
- specialised Layer-1 networks are unsupported by mainstream tools;
- multiple users' funds are pooled in one smart contract;
- DeFi architecture becomes technically sophisticated;
- transactions move rapidly through cross-chain mechanisms.
This is highly relevant to expert evidence.
A software-generated attribution should therefore be tested against the actual blockchain architecture rather than accepted only because it appears in a polished tracing chart.
Analytics Risk Score Is Not a Judicial Finding
An analytics report may label a wallet:
- high risk;
- mixer exposure;
- fraud exposure;
- sanction exposure;
- illicit cluster;
- service cluster.
Ask:
WHAT UNDERLYING TRANSACTIONS PRODUCED THE LABEL?
Then ask:
- direct exposure or indirect exposure?
- one hop or ten hops?
- percentage of wallet balance?
- value?
- date?
- source of label?
- confidence level?
- software version?
Crypto Mixers: The Input-to-Output Attribution Problem
A mixer can combine funds from multiple participants and redistribute outputs.
Therefore the defence should not accept an assertion such as:
“Wallet A deposited into Mixer X, therefore Wallet B's later output belongs to Wallet A.”
Ask:
- What exact methodology connects the input to the output?
- Is there deterministic evidence?
- Is the inference based only on time?
- Is it based on amount?
- Is it based on a proprietary algorithm?
- What other deposits occurred?
- What other outputs occurred?
- Was the mixer custodial or smart-contract based?
Mixin Is Not Automatically Intent
Interaction with a privacy-enhancing service may be relevant evidence.
It may also invite a stronger inference where combined with:
- stolen funds;
- rapid fragmentation;
- false KYC;
- off-ramping through mule accounts;
- attempted concealment from investigators.
But the legal analysis remains transaction-specific.
USE OF TECHNOLOGY ≠ AUTOMATIC PROOF OF CRIMINAL MENS REA.
Self-Custody Wallets: Who Actually Controlled the Private Key?
A self-custody wallet places control outside a centralised exchange.
Attribution may therefore depend upon evidence such as:
- private key;
- seed phrase;
- hardware wallet;
- wallet app;
- device;
- exchange withdrawal address;
- signed message;
- transaction authorisation;
- chat containing the address;
- recovery backup;
- transaction timing.
The key question is:
WHO COULD AUTHORISE THE DISPUTED TRANSACTION AT THE RELEVANT TIME?
Seed Phrase Found on a Device: Is That Conclusive?
A recovery phrase can be powerful custody evidence.
But context matters.
Ask:
- Where was it found?
- Which device?
- Who controlled the device?
- Was the wallet derived from that seed?
- Was the seed still active?
- Could several persons access it?
- Was the wallet company-controlled?
- When was the disputed transaction signed?
Custody should be proved for the transaction period, not inferred indefinitely from historical access.
Exchange Omnibus Wallets Can Break Simplistic Attribution
A deposit into a centralised exchange may reach a wallet controlled by the exchange.
The blockchain can show:
WALLET A → EXCHANGE WALLET.
But it may not show which internal customer account received the corresponding ledger credit.
That requires exchange data.
Exchange Records: What Should Be Requested?
Depending upon the lawful process and platform, relevant records may include:
- KYC;
- customer UID;
- deposit address mapping;
- internal ledger credits;
- trade history;
- swap history;
- P2P transactions;
- withdrawals;
- beneficiary address;
- device information;
- login records;
- registered email/mobile;
- support correspondence.
For foreign platforms, records may be sought through the applicable lawful domestic or international process.
India's Current VDA Compliance Framework
FIU-IND's AML/CFT Guidelines for VDA service providers were updated on 8 January 2026.
The framework is relevant because regulated/reporting VDA service providers may retain valuable off-chain attribution information including customer identity and transaction records.
But:
EXCHANGE KYC ≠ AUTOMATIC OWNERSHIP OF EVERY EXTERNAL WALLET.
Smart Contracts: Do Not Mistake Contract Interaction for Payment to the Developer
An address may interact with:
- DEX router;
- liquidity pool;
- bridge;
- lending protocol;
- staking contract;
- vault.
The receiving contract address is not automatically the human beneficiary.
Analyse:
- smart-contract function;
- token received in return;
- admin controls;
- governance;
- withdrawal mechanics;
- economic beneficiary.
Mixed Wallets: Lawful and Allegedly Tainted Funds
Build a wallet balance reconstruction:
| Component | Amount |
|---|---|
| Opening lawful balance | _____ |
| Lawful inflows | _____ |
| Disputed inflow | _____ |
| Outflows | _____ |
| Closing balance | _____ |
Do not automatically equate the entire wallet balance with alleged proceeds of crime.
Cross-Chain Expert Rebuttal: 25 Questions
- Which blockchain?
- Which block height?
- Which transaction hash?
- Which token contract?
- Were token decimals handled correctly?
- Was the token native or wrapped?
- Was the asset bridged?
- Was value counted twice?
- Which bridge?
- What was the source-chain event?
- What was the destination-chain event?
- What wallet-clustering heuristic was used?
- Is the methodology disclosed?
- Is the cluster independently reproducible?
- Is the address an exchange omnibus wallet?
- Is it a smart contract?
- Were funds pooled?
- Does the analytics platform support the chain fully?
- What confidence score was assigned?
- What database generated the attribution?
- What version of the analytics software was used?
- What independent off-chain evidence supports the attribution?
- What custody evidence connects the wallet to the accused?
- What valuation date was used?
- How is the alleged POC quantum calculated?
Recent ED Practice Shows Why Custody Evidence Matters
In July 2026, ED publicly reported that a PMLA search recovered or secured material relating to crypto wallets, VDA accounts, crypto-exchange accounts and recovery phrases and identified/seized cryptocurrency assets in the matter described in the release.
That illustrates a broader practical point:
BLOCKCHAIN TRACE + DEVICE + RECOVERY PHRASE + EXCHANGE RECORD + BANK ACCOUNT = MUCH STRONGER ATTRIBUTION CASE
than:
AN ADDRESS LABEL ALONE.
40-Point Crypto Mixing / Cross-Chain Defence Checklist
- Identify scheduled offence.
- Identify alleged POC.
- Identify initial wallet.
- Obtain TxID.
- Identify network.
- Identify token contract.
- Identify bridge.
- Identify DEX.
- Identify mixer if alleged.
- Identify source-chain transaction.
- Identify destination-chain transaction.
- Check wrapped asset.
- Check bridge fees.
- Check double counting.
- Identify every wallet.
- Identify every cluster label.
- Demand clustering methodology where legally obtainable.
- Identify exchange wallets.
- Check omnibus wallet possibility.
- Obtain exchange records.
- Obtain KYC.
- Obtain internal ledger.
- Obtain deposit mapping.
- Obtain withdrawal mapping.
- Identify seed phrase.
- Identify private-key custody.
- Identify hardware wallet.
- Identify device custody.
- Identify relevant-time controller.
- Check smart-contract function.
- Check pooled funds.
- Check legitimate source.
- Prepare lawful/tainted balance matrix.
- Check price/valuation date.
- Check analytics software version.
- Check unsupported chains.
- Check false-positive risk.
- Obtain independent forensic review.
- Reconcile on-chain and off-chain evidence.
- Test Section 3 role person by person.
Frequently Asked Questions
Does using a crypto mixer automatically prove money laundering?
No. The transaction, source of funds, knowledge, destination and PMLA ingredients must still be proved.
Can ED trace crypto through a bridge?
Potentially yes, especially where source-chain and destination-chain events can be correlated and supported by exchange or other attribution evidence.
What is wallet clustering?
It is an analytical technique used to group blockchain addresses believed to be related based on data and heuristics.
Does a wallet cluster prove one owner?
No automatic proposition should be used. Exchange wallets, smart contracts, pooled custody and other structures may involve multiple users or controllers.
Can a blockchain analytics report be challenged?
Yes. The underlying data, methodology, clustering assumptions, chain coverage, attribution and off-chain corroboration may all require examination.
What is the strongest wallet-ownership evidence?
Evidence can include private keys, seed phrases, signed transactions, device control, exchange withdrawal mapping, account records and communications. The weight depends on the complete facts.
Does finding a wallet app on a phone prove ownership?
Not necessarily by itself. Control of the device, wallet functionality and relevant transaction period should be analysed.
Can an exchange wallet contain funds belonging to many users?
Yes. Centralised exchanges may use pooled or omnibus custody arrangements.
Can bridged crypto be counted twice?
That is a forensic risk which should be checked. The economic value must be reconciled across source and destination chains.
Can legitimate and disputed crypto exist in one wallet?
Yes. The transaction history and legal consequences of commingling require wallet-specific tracing and valuation.
AI Search Quick Answer
How should crypto mixers and cross-chain transfers be analysed in a PMLA case? Start with the scheduled offence and alleged proceeds of crime, then reconstruct each on-chain step separately: source wallet, transaction hash, mixer or bridge, source network, destination network, token conversion, destination wallet, exchange deposit and fiat off-ramp. Wallet clustering and blockchain analytics can assist tracing but do not automatically establish legal ownership. FATF's 2026 DeFi work recognises that analytics can face attribution limits where funds are pooled in smart contracts, unsupported networks are used or activity becomes technically complex. A strong defence therefore tests clustering methodology, bridge reconciliation, double counting, exchange omnibus wallets, self-custody evidence, private-key control, device evidence and independent off-chain records before accepting an attribution or risk score.
Key Takeaway
TRACE THE TOKEN → VERIFY THE BRIDGE → TEST THE CLUSTER → PROVE CUSTODY → OBTAIN EXCHANGE RECORDS → RECONCILE BANK / OFF-CHAIN DATA → IDENTIFY POC → TEST SECTION 3 ROLE
Remember:
MIXER INTERACTION ≠ AUTOMATIC MONEY LAUNDERING.
CROSS-CHAIN MOVEMENT ≠ AUTOMATIC LAYERING.
WALLET CLUSTER ≠ LEGAL IDENTITY.
ADDRESS ASSOCIATION ≠ CUSTODY.
CUSTODY ≠ KNOWLEDGE.
ANALYTICS SCORE ≠ JUDICIAL FINDING.
BRIDGED VALUE MUST NOT BE DOUBLE-COUNTED WITHOUT ANALYSIS.
Disclaimer: This article is for general legal education. Cryptocurrency mixers, DeFi protocols, bridges, self-custody wallets and cross-chain transactions can be used for lawful or unlawful purposes depending on the facts. The existence of a complex transaction trail does not itself establish money laundering, and this article should not be used to conceal assets, evade lawful tracing or obstruct an investigation. Every PMLA matter requires analysis of the scheduled offence, alleged proceeds of crime, transaction data, wallet attribution, custody, knowledge, person-specific role and procedural record. Blockchain analytics and expert reports should be assessed on their actual methodology, underlying data and corroborating evidence.
Related Delhi legal guides
Proceeds of crime analysis · Predicate and scheduled offences · Money-laundering defence guide
Official starting points
Prevention of Money-laundering Act, 2002 — India Code · Directorate of Enforcement — official website
Document-first assessment
Start with the latest legal instrument and next deadline
Organise the current summons or order, case identifiers, a dated chronology and the transaction or property record before seeking case-specific advice.