Leaked credential on paste/sentry site
Jupiter Perpetual Exchange's assessment for RD-F-164 — scored gray on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Leaked credential on paste/sentry site matching protocol infra. No confirmed leaked credentials for jup.ag or Jupiter team infrastructure identified via public OSINT as of 2026-05-16. The 2025-02-06 X account hack involved unauthorized access from a US-based IP address but no confirmed API key or infra credential leak beyond the X account access. Requires curator-monitored paste/credential-dump feed (HaveIBeenPwned partner feed, DeHashed, Sentry.io public indices) for continuous surveillance — not implemented in T-10 static assessment scope.
Sources #
- URLCryptoPotato — Jupiter X Account Recovery Post-MortemCryptoPotato — Jupiter X account hack 2025-02-06 post-mortem. US-based IP confirmed; no infra credential leak confirmed beyond X account access.retrieved 2026-05-16
Methodology #
Determine whether a public paste site, Sentry-alt, or credential-dump references protocol infrastructure endpoints or API keys.
See the full factor methodology and distribution across all protocols →