Independent public evidence record
Aave V4 at one exact block.
Inspect real contract addresses, runtime bytecode hashes, implementation slots, official audit sources, and every relationship this record has not proven.
Observed on-chain
A fixed snapshot, not a blanket claim.
This independent snapshot uses a partial material scope. It is publicly derived, incomplete, not owner verified, not publicly scored, and not a safety conclusion. It records what Proof of Audits observed at one block and keeps every missing audit, authority, function, and exit relationship open.
Implemented review system
Platform capabilities stay separate from record evidence.
These capabilities come from implemented deployed-protocol tables, services, workflow gates, and public consumers. A capability can exist while this Aave record still lacks the evidence needed to use it.
Case and evidence control
Separate record for every version
Evidence from one release cannot silently carry over to a later release.Keep one review tied to one protocol version, with sources that can be checked later.
Capability 1 of 48: Separate record for every version. Group: Case and evidence control.
Audit-to-live code diff
Reports are discovered. Exact coverage still has to be proven.
Exact coverage requires the reviewed commit, compiler configuration, scope exclusions, reproducible build, and live runtime match.
Evidence gap register
Every missing proof becomes owned work.
G-01CriticalMap every audit report to exact repository commit, files, and exclusions
Audit liaisonOPENG-02CriticalReproduce Core Hub and Main Spoke builds and compare runtime hashes
Build verifierOPENG-03CriticalResolve proxy administrators and governance execution authority
Authority reviewerOPENG-04HighResolve Access Manager, configurator, oracle, position-manager, and gateway implementations
Deployment reviewerOPENG-05HighMap Chainlink feeds, oracle controls, heartbeat, deviation, and fallback behavior
Oracle reviewerOPENG-06HighBind supply, withdraw, borrow, and repay selectors to reviewed functions
Function reviewerOPENG-07HighRun normal, constrained-liquidity, paused, and emergency exit simulations
Exit reviewerOPENG-08HighCollect operator interviews, incident evidence, monitoring receipts, and recovery proof
Evidence leadWAITING ON PROTOCOLInterview status
No interview claimed until the accountable person answers.
Governance / execution owner
Questions
Who can queue and execute upgrades? What delay and veto paths apply?
Required proof
Executor addresses, timelock config, recent AIP trace
Protocol Security Council
Questions
Which emergency powers exist today, and when do they step down?
Required proof
Signer policy, pause/freeze matrix, incident drill
Core engineering owner
Questions
Which commits produced the live Hub and Spoke implementations?
Required proof
Release tag, compiler settings, build artifacts
Oracle / risk owner
Questions
Who changes feeds, caps, premiums, and fallback behavior?
Required proof
Feed registry, role grants, monitoring and escalation
Incident-response owner
Questions
How are users notified, exits protected, and recovery decisions recorded?
Required proof
Runbook, response SLA, drill or observed incident evidence
External ITS v2 decision
Nine buckets visible. Score withheld.
Authority, upgrade and team history
UNKNOWN_INSUFFICIENT_EVIDENCEUser funds and exit rights
UNKNOWN_INSUFFICIENT_EVIDENCEProtection, monitoring and backstops
UNKNOWN_INSUFFICIENT_EVIDENCEAudit reality and current-code proof
UNKNOWN_INSUFFICIENT_EVIDENCECare and accountability
UNKNOWN_INSUFFICIENT_EVIDENCELive change and upgrade discipline
UNKNOWN_INSUFFICIENT_EVIDENCEIncident response and user recovery
UNKNOWN_INSUFFICIENT_EVIDENCEOur team user-care review
UNKNOWN_INSUFFICIENT_EVIDENCEVerified investor and user signal
UNKNOWN_INSUFFICIENT_EVIDENCEComplete feature output
Every evidence track shows proof, limitation, and next decision.
Current-code proof
Runtime bytecode was read for eight material contracts at one exact Ethereum block. The Core Hub and Main Spoke EIP-1967 implementation slots matched the scoped implementations.
Audit coverage
Ten reports are present in the official Aave V4 audit directory. Exact report-to-commit, file, and deployed-contract coverage still requires a formal mapping.
Authority graph
The Access Manager root is in scope. Role holders, proxy administration, and the governance execution path remain unresolved in this independent record.
User exits
Supply, withdraw, borrow, and repay are declared actions. Function selectors, liquidity constraints, emergency behavior, and simulations are not yet approved evidence.
Operator interviews
No Aave operator interview is claimed. A formal review would request accountable owners for governance, emergency, oracle, upgrade, and incident-response decisions.
Change discipline
This record fixes one reference block. Later upgrades, new Spokes, cap changes, and authority changes require a new scope version and freshness decision.
Incident and recovery
Preparedness, observed response, user recovery, and drill evidence must be assessed separately. Public statements are not treated as approved criterion evidence.
Publication
Partial material scope cannot produce a public score badge. Unknown critical deployment effects block publication until independently resolved.
Deployment graph
Material contracts stay inspectable.
0xcca852bc…8ce826c90x6fe3bd0c49…cd595d1d63Implementation slot confirmed0x94e7a5dc…2f56c4850xd5a0f33aee…3ad117b542Implementation slot confirmed0x08ae3be3…a87fdf010x34f8bd1e19…2a538f92e8Runtime observed; authority graph open0x1f075348…e0525c3d0x12b260d3b0…c50c76ecbfRuntime observed; audit mapping open0x9bfff48b…efa5389a0xb0e1af0d5b…0d6f80c8a5Runtime observed; audit mapping open0x99b2b6ce…212a61270x9f0daa8269…756020c009Runtime observed; dependencies open0x51305839…052d575c0x8449f037d3…a3325bcb57Runtime observed; function mapping open0xe68ab4f9…bbbe42be0x9d4b0f4097…7543e6453fRuntime observed; function mapping openProvenance
Claims link back to primary evidence.
Want this evidence record for your live protocol?
Apply for one of 10 sponsored founding baselines. Your team reviews the completed record and decides whether to authorize publication; findings remain independent.
