DeFi Admin Key OpSec Risk Assessment
 Share
The version of the browser you are using is no longer supported. Please upgrade to a supported browser.Dismiss

View only
 
 
ABCDEFGHIJKLMNOPQRSTUVWXYZAAABACADAE
1
2
This information is now being maintained & updated at:
3
https://defiwatch.net
4
5
For more info on this spreadsheet, watch this video:
6
https://youtu.be/U9fVIPhWj6c
7
8
Disclaimer: This data was collected via a combination of conversations with core teams and indepdendent research of publicly available materials. I'm just a guy sharing some interesting data that I collected. Nothing in this spreadsheet constitutes investment advice. All of these protocols are still experimental and risky to use. I make no warranties as to the validity or accuracy of this data. Expect some errors or oversights. Use this as a guide and DYOR. Please direct edits & additions to https://t.me/chrisblec. Be sure to include links & sources.
9
10
11
12
↓ Mouse over these headers for more information on each column. ↓
13
Current Admin Key Config - Time LockCurrent Admin Key Config - MultisigClaimed Admin Key OpSecVerified Admin Key OpSecIs security of deposited funds dependent on opsec of admin key?
Admin Key AddressDocumentation on Admin Key PowersAdditional Info (if any)
14
Compound2 daysNo"Offline multi-party process"UnverifiableYesLinkOpen Zeppelin Audit SummaryBlog Post
15
TokenSetsNo2-of-3"Ledger hw wallets"UnverifiableYesLinkWhitepaper (Section 10)Trail of Bits Audit Report (page 32)
16
AaveNo3-of-5 tokens (Aragon DAO)"Voting keys in cold storage"UnverifiableYesLinkOpen Zeppelin Audit SummaryAave Security Report
17
dYdX3 days2-of-3NoneUnverifiableYesLinkHelp Center ArticleBramah Audit (Highly Privileged Accounts)
18
bZx12 hoursNoNoneUnverifiableYesLinkBlog post (Governance - maybe outdated)
19
PoolTogetherNo2-of-N (Gnosis)NoneUnverifiableYesLinkOpen Zeppelin Audit DisclosuresOpen Zeppelin Audit Summary
20
Dharma7 days3-of-5NoneUnverifiableYesLinkTweetGithub ReadMe (section: Upgradeability)
21
DDEX3 days2-of-3NoneUnverifiableYesLinkNone found
22
SynthetixUnknownUnknownNoneUnverifiableYesUnknownNone foundCurrently advertised as centralized
23
NuoUnknownUnknownNoneUnverifiableLikelyUnknownNone found
24
MakerDecentralized governanceN/AN/ANoN/AN/ARisk due to decentralized governance mechanism
25
InstadappNo admin key or upgrade abilitiesN/AN/ANoN/AN/ASystematic risk via Compound admin key
26
UniswapNo admin key or upgrade abilitiesN/AN/ANoN/AN/ATokens offer varying level of admin key risk
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
Loading...