Rocket Pool
MITHRILLiquid Staking · Ethereum · $3B+ TVL · 20 contracts
Official site: rocketpool.net ↗
850
3004756508251000
Confidence68%
Z-Factor0.85
Updated 2026-05-27Public scoreSecurity Profile
Access Control
85
85
Economic Soundness
82
82
Oracle Integrity
78
78
Compositional Risk
80
80
Governance
75
75
Maturity
88
88
Resilience
75
75
Supply Chain
85
85
Op Security
53
53
Cascade Exposure
100
100
Access Ctrl
85
85
Economic
82
82
Oracle
78
78
Compos.
80
80
Govern.
75
75
Maturity
88
88
Resilience
75
75
Supply Ch.
85
85
OpSec
53
53
Cascade
100
100
Min
53
Avg
80
Max
100
Audit History
Sigma Prime
2021-11
Consensys Diligence
2021-10
Trail of Bits (Atlas)
2023-06
Bug Bounty Program
$500,000
Max payout on Immunefi
Assessment
Decentralized liquid staking with node operator network. 54+ months live with no exploits. rETH widely integrated as DeFi collateral. oDAO trust assumption and governance centralization prevent higher rating.
Dimension Breakdown
MethodologyAccess Control
85Weight 18% · 85% confidence
+21Node operator permission system with staking requirements
+21Oracle DAO for price feeds
+21Guardian role for emergency actions
+21Minipool creation permissioned by bond
Provenance
Economic Soundness
82Weight 13% · 80% confidence
+20rETH exchange rate model proven
+20Node operator incentive alignment via RPL bond
+20Smoothing pool for MEV distribution
+2016 ETH bond requirement for operators
Provenance
Oracle Integrity
78Weight 13% · 75% confidence
+20oDAO submits rETH exchange rate
+20Multiple oracle members required for consensus
+20No external price feed dependency
+20oDAO trust assumption is the main risk
Provenance
Battle-Tested Maturity
88Weight 12% · 88% confidence
+22Live since November 2021 (54+ months)
+22Survived all major market events
+22Third largest liquid staking protocol
+22Multiple protocol upgrades (Atlas, Saturn)
Provenance
Governance & Upgradeability
75Weight 10% · 78% confidence
+25pDAO governance via RPL token
-25oDAO has significant power (exchange rate, penalties)
+25Guardian can pause in emergency
+25Centralization in oDAO membership
Provenance
Adversarial Resilienceredacted
75Weight 10% · 78% confidence
- Multiple audits across versions
- Immunefi bug bounty active
- Atlas upgrade extensively audited
- Sigma Prime primary auditor
Provenance
Operational Security
53Weight 10% · 60% confidence
-24No branch protection detected
+13Active CI/CD (100% success rate)
+13Commit signing: 100% verified
-24Weak PR review coverage (7%)
Provenance
Compositional Risk
80Weight 5% · 78% confidence
+20rETH widely integrated as collateral
+20Minipool contracts are isolated
+20Atlas upgrade added node operator flexibility
+20Saturn upgrade pending
Provenance
Cascade Exposure
100Weight 5% · 50% confidence
+33Member of 1 dependency cluster(s)
+33No cross-protocol cascade exposure detected
+33Source: cross_protocol_composition.json dependency analysis
Provenance
Supply Chain
85Weight 4% · 85% confidence
+21Standard Solidity with OpenZeppelin
+21Verified on Etherscan
+21Moderate dependency graph
+21Minipool delegate pattern
Provenance
Top Score Drivers
Dimensions with the greatest marginal impact on BRI.
Operational Security
53+36 potential
No branch protection detected
Oracle Integrity
78+18.1 potential
oDAO submits rETH exchange rate
Access Control
85+16.3 potential
Node operator permission system with staking requirements
Governance & Upgradeability
75+16 potential
pDAO governance via RPL token
Adversarial Resilience
75+16 potential
Adversarial Risk Signals
Publicly verifiable security posture indicators.
Disclosure HistoryNot Assessed
Remediation VelocityNot Assessed
Bug Bounty ProgramNot Assessed
Audit CoverageNot Assessed
Incident HistoryNot Assessed
methodology v2.1formula v1.0weights v1.0evidence sha256:sha256:b...
Score History & Verification
Score provenance tracking begins with the next reassessment.
On-Chain Data
- Protocol Slug
- "rocket-pool"
- Oracle
- BRORegistry (Base)
- Evidence
- IPFS (pinned)
- Staleness Threshold
- 24 hours
Read Score
registry.getScore("rocket-pool")Reduce exploitable risk
Continuous adversarial analysis, vulnerability detection, and verified reassessment.
Embed this score
Live, updates automatically. Free for any site. Click-through links open the full report on BlackHart.
Style
Theme
Format
Preview
Copy iframe code
<iframe
src="https://blackhart.io/embed/oracle/rocket-pool?variant=card&theme=dark"
title="BlackHart Risk Index: Rocket Pool"
width="340"
height="290"
frameborder="0"
loading="lazy"
style="border:0; max-width:100%;"
></iframe>