defirisk.co
rubric v1.7.0

Prior exploit count

stHYPE (Valantis Labs)'s assessment for RD-F-077 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

0 protocol-contract exploits in 15 months of operation. Hacksdatabase grep ('sthype', 'staked-hype', 'valantis', 'thunderhead') returned no matches. Rekt pipeline: incidents: []. Purrlend exploit (April 2026, ~$1.52M) involved wstHYPE as stolen collateral — this is a Purrlend contract vulnerability, not a stHYPE protocol vulnerability (U22 disambiguation). JELLY/HLP episode (March 2025) affected Hyperliquid exchange, not stHYPE contracts.

Sources #

  • URL
    Purrlend Pauses Protocol Amid $1.52M Hack InvestigationPurrlend exploit: wstHYPE was stolen collateral, not a stHYPE contract vulnerability. Attack vector was Purrlend admin multisig granting unauthorized bridge privileges.retrieved 2026-05-17
  • Internal
    RiskProduct hacksdatabase grephacksdatabase/hacks/ — grepped 'sthype', 'staked-hype', 'valantis', 'thunderhead', 'purrlend' — no matchesretrieved 2026-05-17
  • URL
    Explained: The Hyperliquid Hack (March 2025) — HalbornJELLY/HLP: Hyperliquid L1/HLP vault manipulation, not stHYPEretrieved 2026-05-17

Methodology #

Count the number of distinct incidents in the hack database affecting this protocol.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol staked-hype factor RD-F-077 score green collected_at 2026-05-17 13:02:38