Prior exploit count
stHYPE (Valantis Labs)'s assessment for RD-F-077 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
0 protocol-contract exploits in 15 months of operation. Hacksdatabase grep ('sthype', 'staked-hype', 'valantis', 'thunderhead') returned no matches. Rekt pipeline: incidents: []. Purrlend exploit (April 2026, ~$1.52M) involved wstHYPE as stolen collateral — this is a Purrlend contract vulnerability, not a stHYPE protocol vulnerability (U22 disambiguation). JELLY/HLP episode (March 2025) affected Hyperliquid exchange, not stHYPE contracts.
Sources #
- URLPurrlend Pauses Protocol Amid $1.52M Hack InvestigationPurrlend exploit: wstHYPE was stolen collateral, not a stHYPE contract vulnerability. Attack vector was Purrlend admin multisig granting unauthorized bridge privileges.retrieved 2026-05-17
- RiskProduct hacksdatabase grephacksdatabase/hacks/ — grepped 'sthype', 'staked-hype', 'valantis', 'thunderhead', 'purrlend' — no matchesretrieved 2026-05-17
- Explained: The Hyperliquid Hack (March 2025) — HalbornJELLY/HLP: Hyperliquid L1/HLP vault manipulation, not stHYPEretrieved 2026-05-17
Methodology #
Count the number of distinct incidents in the hack database affecting this protocol.
See the full factor methodology and distribution across all protocols →