BlackHartBlackHart
Scores/Sommelier

Sommelier

DAMASCUS

Yield Vault · Ethereum (Cosmos backend) · $100M+ TVL · 10 contracts

Official site: sommelier.finance

785
3004756508251000
Confidence52%
Z-Factor0.72
Updated 2026-05-27Public score

Security Profile

Access Ctrl
72
Economic
75
Oracle
72
Compos.
62
Govern.
65
Maturity
72
Resilience
70
Supply Ch.
75
OpSec
49
Cascade
95
Min
49
Avg
71
Max
95

Audit History

Ackee Blockchain
2022-08
Trail of Bits
2023-01

Bug Bounty Program

$50,000
Max payout on Immunefi
View Program

Assessment

Active yield vault platform on dedicated Cosmos chain. 44+ months live with clean exploit history. Cross-chain bridge to Ethereum and deep DeFi strategy dependencies are main risk vectors. Validator set provides additional security layer.

Dimension Breakdown

Methodology
Access Control
Weight 18% · 68% confidence
72
+18Cosmos chain with validator set
+18Strategist permissions for vaults
+18Governance controls
+18Bridge to Ethereum
Provenance
Economic Soundness
Weight 13% · 72% confidence
75
+19Active yield vault model
+19Strategy performance fees
+19Risk rating system
+19Diversified strategy exposure
Provenance
Oracle Integrity
Weight 13% · 68% confidence
72
+18Strategy-dependent oracle usage
+18Price feeds for vault accounting
+18Validator consensus on state
+18Mixed oracle quality
Provenance
Battle-Tested Maturity
Weight 12% · 70% confidence
72
+18Live since September 2022 (44+ months)
+18Active vault management proven
+18No exploits on vaults
+18Cosmos chain stable
Provenance
Governance & Upgradeability
Weight 10% · 62% confidence
65
+16SOMM token governance
+16Validator governance on Cosmos
+16Strategist selection process
+16Growing decentralization
Provenance
Adversarial Resilienceredacted
Weight 10% · 65% confidence
70
  • Audited
  • Active bounty
  • Strategy risk is main surface
  • Bridge security critical
Provenance
Operational Security
Weight 10% · 50% confidence
49
-51No branch protection detected
+10No CI/CD pipeline detected
+10Strong PR review culture (70% reviewed)
+10Minimal development activity (0 commits/month)
Provenance
Compositional Risk
Weight 5% · 65% confidence
62
+16Deep DeFi strategy dependencies
+16Cross-chain bridge risk
+16Multiple underlying protocols
+16Strategy composition complexity
Provenance
Cascade Exposure
Weight 5% · 50% confidence
95
+48No cross-protocol cascade exposure detected
+48Source: cross_protocol_composition.json dependency analysis
Provenance
Supply Chain
Weight 4% · 72% confidence
75
+19Cosmos SDK + Solidity
+19Standard dependencies
+19Verified contracts
+19Bridge adds complexity
Provenance

Top Score Drivers

Dimensions with the greatest marginal impact on BRI.

Operational Security
49+35.9 potential
No branch protection detected
Access Control
72+29.5 potential
Cosmos chain with validator set
Governance & Upgradeability
65+21.4 potential
SOMM token governance
Oracle Integrity
72+21.2 potential
Strategy-dependent oracle usage
Battle-Tested Maturity
72+19.5 potential
Live since September 2022 (44+ months)

Adversarial Risk Signals

Publicly verifiable security posture indicators.

Disclosure HistoryNot Assessed
Remediation VelocityNot Assessed
Bug Bounty ProgramNot Assessed
Audit CoverageNot Assessed
Incident HistoryNot Assessed
Deployed 2022-09-0110 dimensionsProvenance Ledger
methodology v2.1formula v1.0weights v1.0evidence sha256:sha256:0...

Score History & Verification

Score provenance tracking begins with the next reassessment.

On-Chain Data

Protocol Slug
"sommelier"
Oracle
BRORegistry (Base)
Evidence
IPFS (pinned)
Staleness Threshold
24 hours
Read Score
registry.getScore("sommelier")
Reduce exploitable risk

Continuous adversarial analysis, vulnerability detection, and verified reassessment.

Embed this score

Live, updates automatically. Free for any site. Click-through links open the full report on BlackHart.

Public
Style
Theme
Format
Preview
Copy iframe code
<iframe
  src="https://blackhart.io/embed/oracle/sommelier?variant=card&theme=dark"
  title="BlackHart Risk Index: Sommelier"
  width="340"
  height="290"
  frameborder="0"
  loading="lazy"
  style="border:0; max-width:100%;"
></iframe>