Rocket Pool
MITHRILLiquid Staking · Ethereum · $3B+ TVL · 20 contracts
Public risk assessment — scores are produced with the same methodology as monitored protocols
Security Profile
85
82
78
80
75
88
75
85
82
85
82
78
80
75
88
75
85
82
Audit History
Bug Bounty Program
Assessment
Decentralized liquid staking with node operator network. 54+ months live with no exploits. rETH widely integrated as DeFi collateral. oDAO trust assumption and governance centralization prevent higher rating.
Dimension Breakdown
How scores work →- Node operator permission system with staking requirements
- Oracle DAO for price feeds
- Guardian role for emergency actions
- Minipool creation permissioned by bond
- rETH exchange rate model proven
- Node operator incentive alignment via RPL bond
- Smoothing pool for MEV distribution
- 16 ETH bond requirement for operators
- oDAO submits rETH exchange rate
- Multiple oracle members required for consensus
- No external price feed dependency
- oDAO trust assumption is the main risk
- Live since November 2021 (54+ months)
- Survived all major market events
- Third largest liquid staking protocol
- Multiple protocol upgrades (Atlas, Saturn)
- pDAO governance via RPL token
- oDAO has significant power (exchange rate, penalties)
- Guardian can pause in emergency
- Centralization in oDAO membership
- Multiple audits across versions
- Immunefi bug bounty active
- Atlas upgrade extensively audited
- Sigma Prime primary auditor
- Professional team operations
- oDAO monitoring infrastructure
- Node operator requirements enforce quality
- Active community monitoring
- rETH widely integrated as collateral
- Minipool contracts are isolated
- Atlas upgrade added node operator flexibility
- Saturn upgrade pending
- Standard Solidity with OpenZeppelin
- Verified on Etherscan
- Moderate dependency graph
- Minipool delegate pattern
Additional Dimensions
- Not assessed — excluded from BRI computation
Risk Drivers
Primary risk factors driving this score, ordered by severity.
Adversarial Risk Signals
Observable security posture indicators. These signals reflect publicly verifiable information and responsible disclosure outcomes. No specific vulnerability details are exposed.
Score History & Verification
Score provenance tracking begins with the next reassessment.
On-Chain Data
- Protocol Slug
- "rocket-pool"
- Oracle
- BRORegistry (Base)
- Evidence
- IPFS (pinned)
- Staleness Threshold
- 24 hours
registry.getScore("rocket-pool")Reduce exploitable risk
BlackHart Monitoring provides continuous adversarial analysis, vulnerability detection, remediation support, and verified reassessment when your risk posture improves.