About
vaults.rip is a collection of different ways a DeFi vault can be misconfigured.
Why
I realised after years of depositing into vaults, like Morpho and Euler, that I had a fairly surface-level understanding of the various controls curators have to direct vault capital.
The minimal design of Morpho vaults is very much optimised for security and govenrance minimisation, which shifts a lot of the burden to the user/curator. I wanted to document as many ways as I could that vault operators could misconfigure a vault, and either accidentally or intentionally lose my money.
This site is a catalogue of those experiments.
Using
It’s intended to be open-source, free, and LLM friendly so people can use in their own workflows without reading a load of essays. Contributions welcome. See the GitHub for more info.
Cases
| Case | Protocol | Component | Risk type |
|---|---|---|---|
| Custom oracle control | Morpho | Oracle | Price manipulation |