FORESHOCK

Every protocol here carries a dated score and the share of it backed by independently verified evidence. Where that share is still thin the assessment says so, is marked Low-signal rather than given a risk band, and holds every unevidenced category at the neutral midpoint instead of assuming it safe. Every score and its reasoning are free to read; the underlying dependency, incident and audit records are part of a plan. How a score is built, how to read one, and how the rubric was tested against real exploits are all in the methodology.

Coverage grows three ways: protocols Foreshock selects at its own discretion, protocols requested through the Request coverage button, and sponsored assessments delivered on an agreed timeline. No path has a guaranteed date except sponsorship.

Scores run from 0, the safest reading, to 100, the riskiest, where 50 is the neutral midpoint every unverified category is held at. Red marks a protocol scoring 50 or above, the band called Elevated: worse than neutral on the evidence gathered. Amber marks one below it, called Moderate. The boundary is fixed. It does not move as coverage grows, and it is not fitted to any backtest result.

Ethena USDtb

Ethena USDtb official site N/A

Ethereum

:

  • Evidence: this reading is based on 100% of the scored weight, verified against named sources. Categories without verified data are excluded from the reading, never counted as safe.
  • Validation: the rubric is backtested against past exploits of protocols in the same TVL, age and category bucket. Protocols of this scale and kind have no such history - a limit of the record itself, not unfinished work.
Score by categories
Code characteristics14.3

Admin key: eoa (a single key), upgradeable without a meaningful timelock, open source.

Dependency risk9.1

Uses 1 oracle (USDtb consumes NO external on-chain price oracle, and that is a first-party-evidenced fact rather than an absence of documentation. Ethena's own contest repo states that 'The price present in any mint/redeem orders are determined by an off-chain RFQ system controlled by Ethena', with an on-chain sanity band applied through verifyStablesLimit depending on whether a collateral is typed STABLE or ASSET. So the price risk is operator risk, not oracle risk. Backing is two assets and USDtb says so plainly: BUIDL and USD, with Anchorage named as holder against both. Since 2025-10-13 issuance, redemption and reserve management sit with Anchorage Digital Bank, and only Anchorage customers can mint or redeem. Attestations are published by Anchorage and linked from USDtb's transparency page, which carries its own disclaimer that the transparency reporting is 'unofficial, not maintained by Anchorage Digital, and not reflective of Anchorage Digital's position on the collateralization of USDtb'. Attestation FREQUENCY is not stated: the homepage claims monthly attestations but the transparency page's Last Updated field renders as a dash. No bridge dependency is recorded even though USDtb exists on Solana and Anchorage custody addresses exist on five chains, because no USDtb document describes any bridge or cross-chain mechanism. That is a documented silence, not an assertion of independence.), composable with 4 other protocols.

Audit profile7.0

4 audits on record, most recent audit is 1-2 years old; the most recent audit found 0 High and 2 Medium severity issues. This reflects code quality at the time of that audit only, not a claim that these specific issues are still unresolved today.

Governance attack surface7.0

No governance token; control sits with eoa rather than a vote, so decision rights are concentrated rather than capturable. The form of that key is scored separately under code characteristics.

TVL profile3.5

TVL change (37%) is within a stable range.

Bug bounty3.3

No bug bounty program on record.

Team factors3.0

Anonymous team, a weak but real signal on its own.

Historical incidents2.3

No known own or inherited incidents.

Protocol age1.5

627 days live, past the ~1yr floor; treated the same as any older protocol, not scored progressively safer with more age.

Assets held (1)

Available with a plan. See pricing.

Dependencies (2)

Available with a plan. See pricing.

Incident history (0)

Available with a plan. See pricing.

Audit history (4)

Available with a plan. See pricing.

This assessment follows Foreshock's published methodology. Exact category weights, scoring rules, thresholds, and aggregation logic are proprietary and not shown here. How to interpret this assessment