DNS/CDN/frontend hash drift
Stake DAO's assessment for RD-F-105 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
T-09 phase-2 signal (tier-A on unscheduled drift). Applicable — stakedao.org served via Vercel nameservers (ns1.vercel-dns.com, ns2.vercel-dns.com); DNSSEC unsigned (Vercel limitation). No DNS change or frontend compromise incident detected for stakedao.org in 2024-2025 OSINT sweep. Domain registered NameCheap since 2019-11-25. No hash drift report found. DNSSEC unsigned is a hygiene gap but not a current fire. Production external monitoring stack not yet implemented. Signal not firing today.
Sources #
- URLStake DAO | The Liquid Lockers ProtocolStake DAO primary frontend — operational as of 2026-05-16; no incident foundretrieved 2026-05-16
- stakedao.org domain information | Webratestakedao.org DNS — Vercel nameservers, DNSSEC unsigned, NameCheap registrarretrieved 2026-05-16
Methodology #
Detect whether the hash of production frontend JS changes versus the prior published hash, or a DNS config change is detected.
See the full factor methodology and distribution across all protocols →