794
3004756508251000
Confidence74%
Z-Factor0.82
Updated 2026-05-27Public scoreSecurity Profile
Access Control
60
60
Economic Soundness
82
82
Oracle Integrity
95
95
Compositional Risk
100
100
Governance
82
82
Maturity
60
60
Resilience
50
50
Supply Chain
75
75
Op Security
55
55
Cascade Exposure
95
95
Access Ctrl
60
60
Economic
82
82
Oracle
95
95
Compos.
100
100
Govern.
82
82
Maturity
60
60
Resilience
50
50
Supply Ch.
75
75
OpSec
55
55
Cascade
95
95
Min
50
Avg
75
Max
100
Audit History
OtterSec
2023-06
Offside Labs
2024-01
Bug Bounty Program
$500,000
Max payout on Self-hosted
Assessment
Largest Solana DEX aggregator with 55+ months live. Clean exploit history and dominant market position. Program authority centralization and expanding product surface (perps, launchpad) are main considerations.
Dimension Breakdown
MethodologyAccess Control
60Weight 18% · 74% confidence
+15Program authority controls upgrades
+15Limit order and DCA programs separate
+15Multisig for emergency actions
+15Permissionless swap routing
Provenance
Economic Soundness
82Weight 13% · 74% confidence
+20DEX aggregator model proven
+20JUP tokenomics with staking
+20Fee structure transparent
+20Swap routing optimization
Provenance
Oracle Integrity
95Weight 13% · 74% confidence
+32Pyth and Switchboard oracle integration
+32Price impact checks on swaps
-5No single oracle dependency
+32Oracle quality depends on underlying DEXs
Provenance
Battle-Tested Maturity
60Weight 12% · 74% confidence
+15Live since October 2021 (55+ months)
+15Largest Solana DEX aggregator
+15Zero protocol-level exploits
+15Multiple product launches
Provenance
Governance & Upgradeability
82Weight 10% · 74% confidence
+27JUP DAO governance
+27Active Stellar DAO participation
-18Program authority still centralized
+27Governance maturing
Provenance
Adversarial Resilienceredacted
50Weight 10% · 30% confidence
- No validated adversarial findings — score set to neutral baseline
Provenance
Operational Security
55Weight 10% · 74% confidence
+14Professional team operations
+14Active monitoring
+14Fast incident response demonstrated
+14Multi-product ops coordination
Provenance
Compositional Risk
100Weight 5% · 74% confidence
+25Deep Solana ecosystem integration
+25Routes through multiple DEXs
+25Perpetual exchange adds complexity
+25Launchpad adds additional surface
Provenance
Cascade Exposure
95Weight 5% · 50% confidence
+48No cross-protocol cascade exposure detected
+48Source: cross_protocol_composition.json dependency analysis
Provenance
Supply Chain
75Weight 4% · 74% confidence
+19Rust/Anchor framework
+19Solana program dependencies
+19Verified programs
+19Standard Solana stack
Provenance
Top Score Drivers
Dimensions with the greatest marginal impact on BRI.
Access Control
60+47.6 potential
Program authority controls upgrades
Adversarial Resilience
50+35.4 potential
Battle-Tested Maturity
60+31.2 potential
Live since October 2021 (55+ months)
Operational Security
55+30.4 potential
Professional team operations
Economic Soundness
82+12.9 potential
DEX aggregator model proven
Adversarial Risk Signals
Publicly verifiable security posture indicators.
Disclosure HistoryNot Assessed
Remediation VelocityNot Assessed
Bug Bounty ProgramNot Assessed
Audit CoverageNot Assessed
Incident HistoryNot Assessed
methodology v2.1formula v1.1weights v1.1evidence sha256:sha256:c...
Score History & Verification
Score provenance tracking begins with the next reassessment.
On-Chain Data
- Protocol Slug
- "jupiter"
- Oracle
- BRORegistry (Base)
- Evidence
- IPFS (pinned)
- Staleness Threshold
- 24 hours
Read Score
registry.getScore("jupiter")Reduce exploitable risk
Continuous adversarial analysis, vulnerability detection, and verified reassessment.
Embed this score
Live, updates automatically. Free for any site. Click-through links open the full report on BlackHart.
Style
Theme
Format
Preview
Copy iframe code
<iframe
src="https://blackhart.io/embed/oracle/jupiter?variant=card&theme=dark"
title="BlackHart Risk Index: Jupiter"
width="340"
height="290"
frameborder="0"
loading="lazy"
style="border:0; max-width:100%;"
></iframe>