Puffer Finance
DAMASCUSLiquid Restaking · Ethereum · $1B+ TVL · 10 contracts
Public risk assessment — scores are produced with the same methodology as monitored protocols
Security Profile
70
72
75
62
55
62
72
78
70
70
72
75
62
55
62
72
78
70
Audit History
Bug Bounty Program
Assessment
Liquid restaking protocol with lowest bond requirement (1 ETH). 27+ months live with no exploits. Young protocol with expanding product surface (UniFi). Governance centralization and EigenLayer dependency are main risks.
Dimension Breakdown
How scores work →- Operator permission system
- Admin controls for protocol parameters
- Validator ticket system
- Centralized admin functions
- pufETH liquid restaking model
- 1 ETH bond requirement (lowest in market)
- Validator ticket economics novel
- UniFi integration adds complexity
- Exchange rate oracle
- No external price feed in core
- Rate update mechanism
- Trust assumption in rate submission
- Live since February 2024 (27+ months)
- Rapidly growing TVL
- No exploits
- Multiple product launches
- Early-stage governance
- Team controls most parameters
- No meaningful decentralization yet
- Foundation structure
- Audited by multiple firms
- Active bounty program
- C4 competition conducted
- Young protocol with evolving surface
- Growing team
- Monitoring infrastructure
- Validator coordination
- Active development
- EigenLayer dependency
- pufETH integration across DeFi
- UniFi rollup adds surface
- Multiple product lines
- Standard Solidity
- OpenZeppelin
- Verified contracts
- Moderate dependencies
Additional Dimensions
- Not assessed — excluded from BRI computation
Risk Drivers
Primary risk factors driving this score, ordered by severity.
Adversarial Risk Signals
Observable security posture indicators. These signals reflect publicly verifiable information and responsible disclosure outcomes. No specific vulnerability details are exposed.
Score History & Verification
Score provenance tracking begins with the next reassessment.
On-Chain Data
- Protocol Slug
- "puffer"
- Oracle
- BRORegistry (Base)
- Evidence
- IPFS (pinned)
- Staleness Threshold
- 24 hours
registry.getScore("puffer")Reduce exploitable risk
BlackHart Monitoring provides continuous adversarial analysis, vulnerability detection, remediation support, and verified reassessment when your risk posture improves.