BlackHartBlackHart
Scores/Yearn Finance/Provenance/Operational Security
D11

Operational Security

Incident response speed, deployment hygiene, key management, monitoring infrastructure, and emergency history.

Weight 10%60% confidence
55
Moderate
info

How This Score Is Built

Incident response speed, deployment hygiene, key management, monitoring infrastructure, and emergency history.

+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative

Scoring Tree

BRI Formula
300 + 700 × ∏(Dᵢ/100)^wᵢ
838
Current BRI
D11Operational Security
Weight 10%
55
(55/100)^0.1 = 0.9420
Sub-Scores
Development Practices
41
Incident Response
35
Deployment Hygiene
54
Key Management
70
Monitoring
85
Emergency History
75
Contributing Factors
+14Commit signing: 100% verified
+14SECURITY.md present (detailed)
+14Minimal development activity (0 commits/month)
+14Multiple monitoring repos found: yearn-keeper, yearn-multisig-actions
-22No branch protection detected
-22CI/CD present but unstable (20% success)
0Incident response time not available (using commit frequency proxy)
0Key management score defaulted (no on-chain data available)
Evidence Sources
githubMay 15sha256:12ed05f3c35b....View
githubMay 15sha256:53d03904d96f....View
githubMay 15sha256:c577826a05c3....View
githubMay 16sha256:a22088d50f9e....View
githubMay 17sha256:e89e7e3f5efa....View

Sub-Score Breakdown

Development Practices
41
Incident Response
35
Deployment Hygiene
54
Key Management
70
Monitoring
85
Emergency History
75

Score Composition

-22

No branch protection detected

-22

CI/CD present but unstable (20% success)

0

Incident response time not available (using commit frequency proxy)

0

Key management score defaulted (no on-chain data available)

+14

Commit signing: 100% verified

+14

SECURITY.md present (detailed)

+14

Minimal development activity (0 commits/month)

+14

Multiple monitoring repos found: yearn-keeper, yearn-multisig-actions

Evidence Chain (8 files)

sha256:a7089b7a36319aac810fcdd...
GitHub APIMay 20, 2026, 05:03 AM
open_in_newGitHub (yearn/yearn-vaults-v3)
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:a7089b7a3631...
GitHub APIMay 19, 2026, 12:49 AM
open_in_newGitHub (yearn/yearn-vaults-v3)
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:b4fc564f1c99...
BlackHart AnalysisMay 17, 2026, 01:33 AM
open_in_newOperational Security — GitHub Repository
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:e89e7e3f5efa...
BlackHart AnalysisMay 16, 2026, 04:33 AM
open_in_newOperational Security — GitHub Repository
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:a22088d50f9e...
BlackHart AnalysisMay 15, 2026, 10:57 PM
open_in_newOperational Security — GitHub Repository
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:c577826a05c3...
BlackHart AnalysisMay 15, 2026, 10:19 PM
open_in_newOperational Security — GitHub Repository
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:53d03904d96f...
BlackHart AnalysisMay 15, 2026, 08:55 PM
open_in_newOperational Security — GitHub Repository
branch protection: No
required reviews: 0
ci success rate: 20%
has ci: Yes
signing ratio: 1
commits 90d: 0
pr review ratio: 40%
dependabot: No
security policy: Yes
sha256:12ed05f3c35b...

Score History

No dimension-level score changes recorded yet.

Methodology: 2.1Formula: 1.0Weights: 1.0