weETH controllerSingle-source / laggy0.42% of debt
The weETH controller layers one WETH/weETH conversion pool and capped rate updates over the modern WETH oracle, with no alternate weETH path.
LBTC controllerSingle-source / laggy0% of debt
The LBTC controller retains two loans despite a zero debt ceiling and layers one eBTC/LBTC/WBTC pool over the modern WBTC oracle without an alternate LBTC path.
Current sfrxETH controller
The current sfrxETH controller combines the modern WETH Curve composite with the frxETH/WETH pool and sfrxETH share rate; its configured ETH/USD clamp was disabled.
Legacy sfrxETH controller
TriCrypto2 USDT/WBTC/WETH WETH leg 0xD51a44d3FaE010294C616388b506AcdA1bfAAE46 + USDT/crvUSD pool 0x390f3595bCa2Df7d23783dFd126427CCeb997BF4 + legacy stable-price aggregator 0xe5Afcf332a5457E8FafCD668BcE3dF953762Dfe7 + ETH/frxETH pool 0xa1F8A6807c402E4A15ef4EBa36528A3FED24E577 + sfrxETH share rate, bounded to Chainlink ETH/USD 0x5f4eC3Df9cbd43714FE2740f5E3616155c5b8419 and a 900-second Uniswap frxETH/FRAX lower floor 0x36C060Cc4b088c830a561E959A679A58205D3F56 · Curve legacy CryptoWithStablePriceAndChainlinkFrxeth · ethereum
sfrxETH (legacy market) · max LTV 89% · Controller 0x8472A9A7632b173c8Cf3a86D3afec50c35548e76; AMM 0x136e783846ef68C8Bd00a3369F787dF8d683a696; A=100, loan discount 9%, liquidation discount 6%. At finalized block 25584850, debt was 153,839.980440801457521311 crvUSD across five loans; zero ceiling disables fresh factory inventory but does not remove existing exposure.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
There is no alternate provider. Chainlink ETH/USD is called unconditionally for a plus-or-minus 1% clamp but updatedAt is not checked; the 900-second Uniswap frxETH/FRAX TWAP is only a lower floor, not failover. Mandatory component reverts block the oracle, and the internal Curve price uses a 600-second EMA.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
wstETH controller
Tricrypto pools 0x7F86Bf177Dd4F3494b841a37e810A34dD56c829B and 0xf5f5B97624542D72A9E06f04804Bf81baA15e2B4 -> paired stable pools 0x4DEcE678ceceb27446b35C672dC7d61F30bAD69E and 0x390f3595bCa2Df7d23783dFd126427CCeb997BF4 -> AggregateStablePrice 0x18672b1b0c623a30089A280Ed9256379fb0E4E62 -> stETH/ETH pool 0x21E27a5E5513D6e65C4f830167390997aA84843a -> wstETH rate · Curve CryptoWithStablePriceWsteth · ethereum
Configured ETH/USD 0x5f4eC3Df9cbd43714FE2740f5E3616155c5b8419 and stETH/ETH 0x86392dC19c0b719886221c78AB11eb8Cf5c52812 plus-or-minus 1.5% clamps; use_chainlink=false at the observed block · Dormant Chainlink clamps · ethereum · 1d staleness bound
wstETH · max LTV 89% · Controller 0x100dAa78fC509Db39Ef7D04DE0c1ABD299f4C6CE; AMM 0x37417B2238AA52D0DD2D6252d989E728e8f706e4; A=100, loan discount 9%, liquidation discount 6%, 150 million crvUSD ceiling. Debt was 7,670,365.763525878213991253 across 77 loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
use_chainlink was false, so the configured 86,400-second Chainlink clamps were dormant rather than failover. The active Curve EMA and AggregateStablePrice route has no contractual heartbeat or stale-answer rejection and no alternate provider.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
WBTC controller
WBTC legs of Tricrypto pools 0x7F86Bf177Dd4F3494b841a37e810A34dD56c829B and 0xf5f5B97624542D72A9E06f04804Bf81baA15e2B4 -> paired USDC/crvUSD and USDT/crvUSD pools -> AggregateStablePrice 0x18672b1b0c623a30089A280Ed9256379fb0E4E62 · Curve CryptoWithStablePriceWBTC · ethereum
Configured BTC/USD 0xF4030086522a5bEEa4988F8cA5B36dbC97BeE88c plus-or-minus 1.5% clamp; use_chainlink=false at the observed block · Dormant Chainlink BTC/USD clamp · ethereum · 1d staleness bound
WBTC · max LTV 89% · Controller 0x4e59541306910aD6dC1daC0AC9dFB29bD9F15c67; AMM 0xE0438Eb3703bF871E31Ce639bd351109c88666ea; A=100, loan discount 9%, liquidation discount 6%, 200 million crvUSD ceiling. Debt was 16,754,863.623974532900875714 across 104 loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
use_chainlink was false, so the configured 86,400-second BTC/USD clamp was dormant rather than failover. Active Curve EMA and AggregateStablePrice inputs have no contractual heartbeat or stale-answer rejection and no alternate provider.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
WETH controller
WETH legs of Tricrypto pools 0x7F86Bf177Dd4F3494b841a37e810A34dD56c829B and 0xf5f5B97624542D72A9E06f04804Bf81baA15e2B4 -> paired USDC/crvUSD and USDT/crvUSD pools -> AggregateStablePrice 0x18672b1b0c623a30089A280Ed9256379fb0E4E62 · Curve CryptoWithStablePriceETH · ethereum
Configured ETH/USD 0x5f4eC3Df9cbd43714FE2740f5E3616155c5b8419 plus-or-minus 1.5% clamp; use_chainlink=false at the observed block · Dormant Chainlink ETH/USD clamp · ethereum · 1d staleness bound
WETH · max LTV 83.71% · Controller 0xA920De414eA4Ab66b97dA1bFE9e6EcA7d4219635; AMM 0x1681195C176239ac5E72d9aeBaCf5b2492E0C4ee; A=100, loan discount 14.29%, liquidation discount 9.21%, 200 million crvUSD ceiling. Debt was 1,696,250.542549832367317280 across 200 loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
use_chainlink was false, so the configured 86,400-second ETH/USD clamp was dormant rather than failover. Active Curve EMA and AggregateStablePrice inputs have no contractual heartbeat or stale-answer rejection and no alternate provider.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
Current sfrxETH controller
Modern WETH Tricrypto and AggregateStablePrice composite -> frxETH/WETH pool 0x9c3B46C0Ceb5B9e304FCd6D88Fc50f7DD24B31Bc -> sfrxETH share rate · Curve CryptoWithStablePriceSfrxeth · ethereum
Configured ETH/USD 0x5f4eC3Df9cbd43714FE2740f5E3616155c5b8419 plus-or-minus 1.5% clamp; use_chainlink=false at the observed block · Dormant Chainlink ETH/USD clamp · ethereum · 1d staleness bound
sfrxETH (current market) · max LTV 89% · Controller 0xEC0820EfafC41D8943EE8dE495fC9Ba8495B15cf; AMM 0xfA96ad0a9E64261dB86950e2dA362f5572c5c6fd; A=100, loan discount 9%, liquidation discount 6%, 50 million crvUSD ceiling. Debt was 1,218,769.139164882615291076 across 18 loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
use_chainlink was false, so the configured 86,400-second ETH/USD clamp was dormant. Active Curve EMA, AggregateStablePrice, and share-rate components have no alternate provider or contractual stale-answer rejection.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
tBTC controller
crvUSD/tBTC/wstETH pool 0x2889302a794dA87fBF1D6Db415C1492194663D13 tBTC EMA -> AggregateStablePrice 0x18672b1b0c623a30089A280Ed9256379fb0E4E62 · Curve CryptoWithStablePriceTBTC · ethereum
Configured BTC/USD 0xF4030086522a5bEEa4988F8cA5B36dbC97BeE88c plus-or-minus 1.5% clamp; use_chainlink=false at the observed block · Dormant Chainlink BTC/USD clamp · ethereum · 1d staleness bound
tBTC · max LTV 89% · Controller 0x1C91da0223c763d2e0173243eAdaA0A2ea47E704; AMM 0xf9bD9da2427a50908C4c6D1599D8e62837C2BCB0; A=100, loan discount 9%, liquidation discount 6%, 50 million crvUSD ceiling. Debt was 3,167,593.156509140683260690 across 17 loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
use_chainlink was false, so the configured 86,400-second BTC/USD clamp was dormant. The single active Curve pool and AggregateStablePrice expose no contractual heartbeat, stale-answer rejection, or alternate tBTC price path.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
weETH controller
WETH/weETH pool 0xDB74dfDD3BB46bE8Ce6C33dC9D82777BCFc3dEd5 with USE_RATES=true and stored-rate speed cap 1% per minute -> base WETH oracle 0x966cBDeceFB60A289b0460F7638f4A75F432cA06, whose Chainlink clamp was disabled · Curve CryptoFromPoolsRateWAgg · ethereum
weETH · max LTV 90.14% · Controller 0x652aEa6B22310C89DCc506710CaD24d2Dba56B11; AMM 0xEd325262f54b2987e74436f4556a27f748146da1; A=70, loan discount 7%, liquidation discount 4%, 20 million crvUSD ceiling. Debt was 159,841.535473546838251713 across ten loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
There is no alternate weETH conversion path. The oracle applies a one-percent-per-minute speed cap to its stored rate and then multiplies by the base WETH Curve composite; the base oracle's Chainlink clamp was disabled, and active Curve inputs have no contractual stale-answer rejection.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
cbBTC controller
cbBTC/WBTC pool 0x839d6bDeDFF886404A6d7a788ef241e4e28F4802 -> base WBTC oracle 0xBe83fD842DB4937C0C3d15B2aBA6AF7E854f8dcb, whose Chainlink clamp was disabled · Curve CryptoFromPoolWAgg · ethereum
cbBTC · max LTV 90.83% · Controller 0xf8C786b1064889fFd3c8A08B48D5e0c159F4cBe3; AMM 0xB6E62Aa178a5421d0A51D17E720A05de78D3137A; A=75, loan discount 6.5%, liquidation discount 3.5%, 50 million crvUSD ceiling. Debt was 1,208,494.487182224333313150 across 20 loans.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
There is no alternate cbBTC conversion provider. The single pool is multiplied by the modern WBTC Curve composite, whose Chainlink clamp was disabled; active Curve inputs have no contractual heartbeat or stale-answer rejection.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.
LBTC controller
eBTC/LBTC/WBTC pool 0xabaf76590478F2fE0b396996f55F0b61101e9502 LBTC/WBTC conversion -> base WBTC oracle 0xBe83fD842DB4937C0C3d15B2aBA6AF7E854f8dcb, whose Chainlink clamp was disabled · Curve CryptoFromPoolWAgg · ethereum
LBTC · max LTV 90.83% · Controller 0x8aca5A776a878Ea1F8967e70a23b8563008f58Ef; AMM 0x9a2e6bb3114B1EEB5492D97188A3ECB09E39fac8; A=75, loan discount 6.5%, liquidation discount 3.5%. Debt was 1.066531947162226292 crvUSD across two loans; zero ceiling disables fresh factory inventory but does not remove existing exposure.
LLAMMA band arbitrage performs permissionless soft liquidation as collateral price moves. Hard liquidation is permissionless when health(user, true) is below zero; a borrower or approved caller can invoke it earlier. The controller uses crvUSD already held in the AMM first, then requires the liquidator or callback to atomically supply any shortfall before collateral is transferred and debt is reduced. · liquidation delay None
There is no Stability Pool, insurance fund, protocol bad-debt buyer, or committed auction backstop. LLAMMA inventory is used first and an external liquidator must provide the remaining crvUSD.
There is no alternate LBTC conversion provider. The single pool is multiplied by the modern WBTC Curve composite, whose Chainlink clamp was disabled; active Curve inputs have no contractual heartbeat or stale-answer rejection.
Recorded debt decreases only after the liquidation amount is fully covered. If liquidation is unavailable or uneconomic, the unhealthy loan remains open; the reviewed controller and factory define no global shutdown, settlement, write-off, or debt-socialization path.