FORESHOCK

Every protocol here carries a dated score and the share of it backed by independently verified evidence. Where that share is still thin the assessment says so, is marked Low-signal rather than given a risk band, and holds every unevidenced category at the neutral midpoint instead of assuming it safe. Every score and its reasoning are free to read; the underlying dependency, incident and audit records are part of a plan. How a score is built, how to read one, and how the rubric was tested against real exploits are all in the methodology.

Coverage grows three ways: protocols Foreshock selects at its own discretion, protocols requested through the Request coverage button, and sponsored assessments delivered on an agreed timeline. No path has a guaranteed date except sponsorship.

Scores run from 0, the safest reading, to 100, the riskiest, where 50 is the neutral midpoint every unverified category is held at. Red marks a protocol scoring 50 or above, the band called Elevated: worse than neutral on the evidence gathered. Amber marks one below it, called Moderate. The boundary is fixed. It does not move as coverage grows, and it is not fitted to any backtest result.

Obol

Obol official site N/A

Ethereum

:

  • Evidence: this reading is based on 100% of the scored weight, verified against named sources. Categories without verified data are excluded from the reading, never counted as safe.
  • Validation: the rubric is backtested against past exploits of protocols in the same TVL, age and category bucket. None has been evaluated for this one yet, so the reading rests on its evidence alone.
Score by categories
Audit profile10.1

5 audits/contests on record, most recent (Trail of Bits, 2026-01-01) has unread findings, scored as unknown, not assumed clean.

Code characteristics7.6

Admin key: none, open source.

Dependency risk6.1

No bridge or oracle dependencies on record (Obol consumes NO price oracle, and this is asserted affirmatively by Obol rather than merely absent from its docs -- which is a stronger and more scoreable finding than silence. Its own contract docs: the Splits and OVM contracts 'are designed to be secure, non-upgradeable, and self-sovereign. They don't require tokens to function and operate without oracles (unless using a swapper).' The real dependency profile is operational and centralisation risk, not price risk, and Obol documents it against itself with unusual candour on its own risks page: Obol-hosted relays, whose loss prevents peer discovery and DKG; 'the Labs team having the ability to update the Charon code used by node operators', which could introduce vulnerabilities; an Obol-hosted Launchpad as a frontend single point of failure; an Obol API for pre-signed exit messages, which means 'the Obol core team could in theory initiate an unwanted exit'; and Obol as a going concern. Scoring this protocol as oracle-dependent would be wrong.), composable with 5 other protocols.

TVL profile5.5

TVL is 79% below this protocol's own peak; TVL change (32%) is within a stable range.

Governance attack surface5.0

Top 10 holders control 49.02%, adjusted figure may still include pooled custody (untagged exchanges, infrastructure contracts) due to tagging coverage limits; exclusions require positive identification.

Protocol age2.8

304 days live, still young.

Historical incidents2.3

No known own or inherited incidents.

Team factors1.8

Doxxed team, track record: unknown.

Bug bounty1.8

Has a bug bounty program.

Assets held (1)

Available with a plan. See pricing.

Dependencies (2)

Available with a plan. See pricing.

Incident history (0)

Available with a plan. See pricing.

Audit history (5)

Available with a plan. See pricing.

This assessment follows Foreshock's published methodology. Exact category weights, scoring rules, thresholds, and aggregation logic are proprietary and not shown here. How to interpret this assessment