★ Rescue/emergencyWithdraw without timelock
Hyperliquid's assessment for RD-F-041 — scored yellow on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Bridge2 has invalidateWithdrawals() (cold validator 2/3 quorum — can cancel pending withdrawals of any user) and emergencyUnlock() (cold validator 2/3 quorum). No timelock on either. Cold validator set is primarily Hyperliquid Labs-controlled. Quorum requirement provides meaningful resistance vs. single-key rescue. Yellow not red because the 2/3 cold-validator quorum is a real barrier.
Sources #
- GitHub
- Hyperliquid bridge contract technical analysis — cold validator powersPANews technical analysisretrieved 2026-04-28
Methodology #
Determine whether a `rescue(…)` or `emergencyWithdraw(…)` function exists callable by admin without a timelock delay on execution.
See the full factor methodology and distribution across all protocols →
rubric_version v1.7.0 protocol hyperliquid factor RD-F-041 score yellow collected_at 2026-04-28 13:58:49