Hyperliquid HLP

Red · 16/100 Data confidence 74/100

Missing critical evidence: audit, incident. The score is capped until coverage improves.

Executive summary

Hyperliquid HLP is a protocol-owned market-making and liquidation vault on Hyperliquid L1 that provides liquidity for perpetual futures markets, earning fees and funding while absorbing liquidation risk; it scores 16/100 (red band), reflecting severe centralization, governance opacity, and repeated loss events.

  • Security & incidents: HLP has suffered multiple manipulation attacks (POPCAT, JELLY) that offloaded multi-million-dollar losses onto the vault; a March 2025 ETH liquidation cost HLP approximately $4 million. A bug bounty program launched February 18, 2025, with payouts up to ~1M USDC for critical issues, but no confirmed payouts or findings are verifiable as of 2026-08-29.
  • Governance & custody: Governance is stake-weighted via validators, with Hyper Foundation controlling ~49.3% of staked HYPE as of July 2026; no independent timelock or multisig guardrails are verifiable. HLP is a pooled vault with 4-day withdrawal lock-up, not individual self-custody; protocol-level custody and key management details are not verifiable as of 2026-08-29.
  • Top risks: Market-making counterparty risk (vault takes the other side of traders); liquidation/tail-loss risk (absorbs underwater positions in illiquid tokens); protocol/L1 risk (bugs, downtime, or emergency actions can impair vault operation); concentration/shared-loss risk (losses socialized across depositors); oracle/manipulation risk (third-party price feeds and thin markets vulnerable to exploitation).
  • Strengths: Community-accessible protocol vault with multiple revenue streams (market-making, liquidations, trading fees, Earn); operationally integrated into Hyperliquid's on-chain order book; simple USDC-denominated user experience; acts as exchange liquidity backstop during stress.
  • Unverified: TVL composition, custody arrangement, reserve policy, contract addresses, admin powers, legal entity/jurisdiction, KYC/AML enforcement, exact launch date, on-chain collateral exposure, and stress-test loss magnitudes are all not verifiable as of 2026-08-29. Trustpilot score (~2.6/5) cited by one source; founder Jeff Yan publicly named but team structure and prior-project outcomes partially unverified.

Score

Component Weight Raw Points Reason
security 25% 20 5.0 0 audit(s); no fresh audit; active bug bounty bonus
incidents 25% 50 12.5 0 incident(s) in 730-day window, losses $0; 0 high/critical news
verifiability 15% 83 12.4 0 onchain, 15 two-source, 5 one-source of 21 fact(s)
stability 15% 50 7.5 stability not established; 0 current depeg event(s)
adoption 10% 50 5.0 TVL unavailable; neutral context, not a safety signal
governance 10% 40 4.0 verified governance +20; timelock in governance +15; legal enforcement/sanction -30
  • No audit of deployed contracts (−15): no audit facts recorded
  • Active regulatory enforcement (−15): legal fact mentions enforcement or sanction

Identification

protocol identification

two sources

Protocol identification

  • Name: Hyperliquid HLP (Hyperliquidity Provider vault).
  • Website / app: app.hyperliquid.xyz, with HLP accessible under the Vaults section.
  • Docs: Hyperliquid Docs (GitBook), notably the Protocol vaults → Hyperliquidity Provider (HLP) page.
  • Category: On-chain protocol-owned liquidity / market‑making vault for a perpetual futures exchange (DeFi derivatives + yield vault).
  • Chains: Runs natively on Hyperliquid L1 (HyperCore); HLP is described as a “protocol-native vault embedded into the L1’s financial engine,” not an EVM contract on a mainstream chain.
  • Native token for the vault: Deposits are in USDC, which is the asset users supply and in which PnL is tracked and paid.
  • Launch date: Not directly stated in retrieved sources; several explainers and docs are dated 2025–2026 and refer to HLP as the “flagship” vault, but the exact launch block/time is Not verifiable as of 2026-08-29. Core mechanics (for identification)
  • HLP is a community-owned protocol vault that:
  • runs multiple market‑making strategies across Hyperliquid perp orderbooks,
  • performs backstop liquidations, and
  • supplies idle USDC into Hyperliquid’s Earn module,
  • in return accrues a portion of trading fees that are socialized pro‑rata to depositors.
  • Deposits are subject to a 4‑day lock‑up before withdrawals can settle. Main contract / vault address and verification
  • Multiple independent sources (Coingecko Learn, Datawallet, DeFi‑explained articles) point to an HLP vault address formatted as 0xdfc2…f303 (e.g., 0xdfc24b077bc1425ad1dea75bcb6f8158e10df303) as the canonical HLP vault address on Hyperliquid L1.
  • These sources state that positions, fills, and balances are visible on-chain at that vault address, and that the address is queried via Hyperliquid’s public info API (vaultDetails) for analytics.
  • I do not have direct explorer access in this turn, so explorer verification status (e.g., contract verified, label status) is Not verifiable as of 2026-08-29. Fork lineage, audits, and modification history
  • Public write‑ups and docs describe HLP as native to Hyperliquid’s own L1 trading engine, not a fork of a known EVM protocol like GMX, Synthetix, or dYdX.
  • None of the retrieved sources identify HLP as a fork or list a specific upstream codebase; they present it as part of HyperCore’s custom architecture.
  • No independent audit reports specific to HLP vault logic were surfaced in the retrieved material; any audit status for HLP itself is Not verifiable as of 2026-08-29.
  • Likewise, there is no documented history of malicious modifications in HLP forks or clones in the retrieved sources; Not verifiable as of 2026-08-29. Given the current data, HLP should be treated as a bespoke, protocol-native liquidity vault on Hyperliquid L1, with USDC as the underlying asset, and not as a simple fork of an existing EVM vault design.
Evidence (9)

maturity

one source

Hyperliquid HLP is a real, functional app portal rather than a simple landing page: the official docs describe active vault deposit/withdraw flows, a 4-day HLP lockup, and API endpoints for vault actions and account info. The product also appears to support live withdrawals/deposits through the app/API, with the docs explicitly describing deposit, withdrawal, and bridge flows in operational terms. An open API exists: the official developer docs expose https://api.hyperliquid.xyz/info and https://api.hyperliquid.xyz/exchange for vault and account operations, so this is not a closed interface. I did not find reliable evidence in the gathered sources of broken links, fake metrics, or template-site signs, and those claims are not verifiable as of 2026-08-29. The strongest maturity signal is that the protocol has maintained current developer documentation with specific endpoint behavior and examples, which is typical of an actively used product rather than a marketing-only site.

Evidence (3)

Security

bug bounty

two sources

Hyperliquid appears to have an active bug bounty program. The clearest program details available in the docs say rewards are severity-based, with examples of Critical issues tied to major loss or L1 execution invariant violations, High issues tied to network downtime without incorrect state, and Medium issues tied to API server performance problems; the docs also say rewards are determined by both severity and likelihood of occurrence. The same docs indicate payout examples of under 10k USDC for Medium and up to nearly 1M USDC for Critical issues, and a launch article says the program was unveiled alongside HyperEVM on 18 Feb 2025. The program’s start date is therefore best placed at February 18, 2025, when Hyperliquid announced HyperEVM and the bug bounty rewards; however, the exact initial publication date of the bounty page itself is not shown in the results, so this launch date is the strongest available marker. The announcement also says the program would pay mainnet bounty amounts for in-scope reports effective immediately. As for results, no source in the provided set reports any confirmed payout totals, number of findings, or named disclosures attributable to Hyperliquid’s bounty program. So the outcome is Not verifiable as of 2026-08-29. One caution: CertiK lists Hyperliquid as having a 3rd Party Bounty: Yes, but the page does not provide the bounty terms or outcomes, so it is only a cross-check that a third-party bounty exists, not a results source.

Evidence (4)

counterparty risks

two sources

Hyperliquid HLP is an LP-style vault on the Hyperliquid L1 derivatives exchange, providing funding/liquidity for perpetual markets and earning fees plus funding. Counterparty and dependency risk is concentrated in the Hyperliquid stack and its asset universe; on‑chain verification is not possible here: Not verifiable as of 2026-08-29. 1. Core protocol & contract dependencies

  • Exchange / matching engine: HLP’s economics depend entirely on Hyperliquid’s off-chain matching engine and risk system, which is operated by the core team and not a credibly neutral on-chain AMM.
  • Failure/misconfiguration could lead to wrongful liquidations, socialized loss, or halted trading.
  • Smart contracts on Hyperliquid L1: User deposits into HLP are managed by protocol contracts on the project’s own L1 rather than Ethereum/mainstream L2s.
  • Chain halts, consensus failures, or bugs in Hyperliquid L1 represent systemic risk to all HLP capital. 2. Oracle & price manipulation risk
  • Hyperliquid uses an internal price feed and risk engine aggregated from multiple exchanges, not standard on-chain oracles like Chainlink.
  • This concentrates oracle risk in project infrastructure: bad data, exchange outages, or manipulation on reference venues can force mispriced liquidations and PnL.
  • Thin-liquidity/long-tail pairs on Hyperliquid are more exposed to short‑term manipulation. 3. Asset exposure (stablecoins, RWA, LST, restaking)
  • HLP is denominated in USDC-like stable assets and gains exposure via trader PnL across many perp markets (crypto majors and long-tail assets).
  • Stablecoin backing and solvency (e.g., Circle for USDC or other stable issuers) remain external counterparty risks; a depeg would directly hit HLP’s book.
  • As of available documentation, HLP has no explicit RWA/SPV, LST, or restaking strategies; exposure to such assets is indirect via derivatives pricing (e.g., ETH/LST basis).
  • Specific composition of HLP collateral and per‑asset risk weights: Not verifiable as of 2026-08-29. 4. Bridges, custodians, CEX/MM exposure
  • Hyperliquid L1 is a separate chain; interaction with broader ecosystems (deposits/withdrawals from Ethereum or CEXs) likely uses bridging and centralized off‑ramp infrastructure, but technical details and providers are not clearly documented: Not verifiable as of 2026-08-29.
  • Internal market makers and large accounts may be funded from CEX balances; concentrated positions can amplify tail risk in extreme moves. 5. Failure scenarios
  • Chain or sequencer failure on Hyperliquid L1 → frozen HLP withdrawals, possible PnL mismatch.
  • Risk engine/oracle failure → mispriced liquidations, HLP taking outsized losses from one side of the book.
  • Stablecoin issuer/regulatory shock → depeg or freeze of collateral.
  • Operational or governance failure (team keys, upgrades, admin powers) → direct control over HLP parameters and potentially funds, given centralized architecture. Sources: Hyperliquid docs/FAQ; independent analyses of Hyperliquid’s architecture and risk model; community technical discussions of Hyperliquid L1 and HLP design.
Evidence (3)

crypto custody

two sources

Hyperliquid HLP is organized as a community-owned protocol vault on Hyperliquid L1: users deposit USDC into the vault, and the pool is then used by the protocol to market-make, absorb liquidations, and supply USDC in Earn; profits and losses are shared pro rata among depositors. This is not individual self-custody inside HLP; the custody model is pooled vault custody, with a 4-day withdrawal lock-up after the most recent deposit. The official docs describe HLP as fully community-owned, while independent explainers describe it as a shared liquidity pool where depositor capital bears the vault’s trading and liquidation risk. Hyperliquid itself is described by third-party guides as non-custodial at the wallet level, meaning users control their wallet keys, but HLP depositors still delegate capital into the pooled vault strategy rather than retaining direct control of the deposited funds.

Evidence (5)

key management

one source

Hyperliquid HLP’s key management is not organized like a normal user vault; HLP is described as a protocol vault that is fully community-owned and operated inside Hyperliquid’s L1 trading engine rather than as a third-party smart contract. The deposit, accounting, and strategy execution are handled at the protocol level, while the underlying strategy logic is described by third-party commentary as proprietary and operated by the Hyperliquid team. For end users depositing into HLP, control is handled through the Hyperliquid wallet model: users connect a wallet, and Hyperliquid uses delegated signing via an agent wallet for most trading actions, while the main wallet signs only higher-risk actions such as deposits, withdrawals, USDC transfers, and agent management. The agent wallet is created in the browser, has an expiration, and can be revoked, which means day-to-day interaction is separated from the wallet that actually controls funds. So, in practice, key management is organized in two layers: protocol-level custody/operation for HLP itself and user-level delegated signing for access to the app. Not verifiable as of 2026-08-29: whether any additional internal team multisig, threshold signing, or HLP-specific admin key structure is used, because the available sources do not confirm that detail.

Evidence (3)

smart-contract

two sources

Hyperliquid HLP is a native Hyperliquid L1 protocol; there is limited public contract-level transparency compared to EVM DeFi. All smart-contract and admin findings below are therefore constrained, and anything “on-chain verified” is Not verifiable as of 2026‑08‑29. ### 1. Contract addresses, verification, architecture

  • Hyperliquid runs its own L1 with a custom stack; HLP is the spot/perps liquidity provider product, not an EVM-style ERC‑20 vault.
  • Public Etherscan-style contract pages and standard proxy/implementation patterns do not apply; contracts and addresses for HLP are Not verifiable as of 2026‑08‑29 via independent explorers.
  • No independent documentation of upgradeability/proxy architecture for HLP contracts was found; any such structure is Not verifiable as of 2026‑08‑29. ### 2. Admin / owner / emergency powers
  • The team explicitly describes the chain as non‑custodial, with all trading and liquidity on-chain.
  • However, detailed role breakdown (owner, admin, guardian, emergency pause, oracle setters, fee setters) at the contract level is Not verifiable as of 2026‑08‑29.
  • There is no public evidence of:
  • A timelock contract or enforced delay on protocol parameter changes.
  • On-chain renunciation of admin/owner roles.
  • Delegated proxy admin vs. multi‑sig vs. DAO control. All of the above are Not verifiable as of 2026‑08‑29. ### 3. User exit and worst‑case key compromise
  • Users can withdraw HLP through the app UI, which interacts directly with Hyperliquid L1; this indicates users are not locked into an off‑chain IOU or custodial account.
  • Whether withdrawals can be paused or gated by admin keys (e.g., via a circuit breaker or global pause) is Not verifiable as of 2026‑08‑29.
  • If core keys (chain operators, upgrade keys, or vault controllers) were compromised, plausible but unverified risks include:
  • Rug risk: malicious upgrade or state transition draining HLP liquidity.
  • Freeze risk: protocol‑wide halt of trading or withdrawals.
  • Oracle/fee abuse: manipulating internal pricing or fee parameters to extract value from LPs. These scenarios are analytical inferences, not on-chain verified facts. ### 4. Architecture map (conceptual) Given the lack of verified contract data, the architecture can only be described at a high level:
  • Hyperliquid L1 chain → consensus + execution.
  • Core exchange contracts (order matching, positions, funding, spot pool) → Not verifiable as of 2026‑08‑29.
  • HLP vault / pool logic (mint/burn HLP, account for PnL, fees) → Not verifiable as of 2026‑08‑29.
  • Admin/ops keys (upgrade, parameters, emergency) → Not verifiable as of 2026‑08‑29. Due to the non‑EVM architecture and absent independent explorer tooling, a precise smart‑contract and admin‑risk map for Hyperliquid HLP remains Not verifiable as of 2026‑08‑29.
Evidence (2)

Live security feed

No verified protocol news in the last 12 months.

Team & Reputation

founders

two sources

Hyperliquid appears to have a small, partly public founding team led by Jeff Yan (founder/CEO) and iliensinc (co-founder/core engineer/CTO-style role in secondary reporting). Independent reporting consistently describes Yan as a former quantitative trader who previously ran Chameleon Trading; multiple writeups also say the project was bootstrapped rather than VC-backed, with a core team of roughly 11 people. Some team members are public by name and title, while others remain anonymous or only partially identified. Reality check: there is credible evidence of a real operating business, not just a web front. Reporting ties Hyperliquid to a real product, a small technical team, and an identifiable founder with a prior trading operation; however, much of the detail about office location, legal domicile, and full team roster comes from secondary media or community profiles rather than primary corporate disclosures. The exact physical office and onshore/offshore structure are not verifiable as of 2026-08-29 from the gathered sources. Prior projects / outcomes / hacks: the main pre-Hyperliquid prior project consistently referenced is Chameleon Trading; I did not find verified evidence in the gathered sources of a public hack or prior failure attributable to the founders. Public identity is mixed: Jeff Yan is publicly named, while some collaborators are pseudonymous or not fully disclosed. Credibility signals: the team is described as coming from trading/engineering backgrounds (e.g. HFT and elite technical institutions), which supports execution credibility, but several claims about staffing, headquarters, and funding are still primarily third-party reporting or self-description and should be treated as unverified marketing claim unless independently corroborated.

Evidence (6)

general reputation

two sources

Hyperliquid and its HLP vaults are seen as high-performing but controversial and high‑risk, with repeated criticism around centralization, risk management, and regulatory exposure, rather than direct founder fraud or insolvency. General reputation & sentiment

  • Media and industry coverage frequently describe Hyperliquid as a “controversial” DeFi dark horse that has grown rapidly while courting significant risk.
  • Public user reviews are mixed: one integration overview cites a Trustpilot score around 2.6/5, with complaints about frozen funds, weak support, and account risk flags.
  • Community discussions acknowledge attractive yields but highlight economic risk to HLP due to past “exploits” that left the vault with bad debt. HLP‑specific criticisms & incidents
  • Multiple manipulation events (e.g., POPCAT, JELLY) led attackers to offload multi‑million‑dollar losses onto the HLP vault, exposing thin liquidity and design vulnerabilities.
  • Analysts note that HLP’s mixed vault structure creates collective risk, where one manipulated market can harm all LPs, and that validator‑driven interventions (margin changes, delistings, oracle tweaks) undermine DeFi’s trustless ethos.
  • A separate product, HLP0 (tokenized representation of HLP exposure), faced backlash when its manager moved tens of millions into other DeFi protocols instead of contributing to HLP, raising governance and mandate‑drift concerns. Rug pulls and third‑party protocols on Hyperliquid
  • The chain has hosted projects that rug‑pulled users (e.g., Hypervault losing $3.6M via Tornado Cash; Trove market’s token dropping ~95% after pivoting chains), which damages the ecosystem’s reputation, even though these are separate teams from Hyperliquid itself. Centralization, “fake DEX” narrative & FTX‑style fears
  • A major CEX executive publicly labeled Hyperliquid a “fake DEX” and ‘FTX 2.0’ risk, criticizing validator control and emergency delistings as incompatible with decentralization, and likening it to an offshore CEX with no KYC/AML.
  • Independent analyses echo concerns that validator centralization and discretionary ADL/market interventions blur lines between DeFi and centralized brokerage. Regulatory / sanctions concerns
  • Large traditional exchanges (CME, ICE) have formally urged US regulators to scrutinize Hyperliquid, citing systemic risk, market manipulation, and sanctions‑evasion potential in anonymous perpetual trading.
  • Hyperliquid reportedly remains globally unregulated, without KYC/AML, which is central to these criticisms. Founders, investors, auditors
  • Public controversy focuses on design and governance choices, not named founders or investors. Auditor and formal regulatory actions are Not verifiable as of 2026‑08‑29 under current data. Unresolved concerns
  • Key ongoing issues: HLP’s exposure to targeted manipulation, validator centralization, opaque risk governance, support/user‑experience complaints, and looming regulatory attention.
Evidence (15)

Economy

model

two sources

Hyperliquid HLP is a market-making / liquidation vault on Hyperliquid L1, not a directional fund: it supplies liquidity, absorbs liquidations, and is typically designed to be market-neutral at the system level, though realized PnL can swing with market conditions. The main inflow is USDC deposits; the main outflows are withdrawals subject to a lock-up / queue mechanism and protocol-specific gating/limits. Yield is primarily organic—from trading fees shared to HLP and from the vault’s market-making/liquidation PnL—rather than a subsidy program. DefiLlama’s methodology page for HLP states the fee stream is 1% of perp and spot trading revenue (excluding builders and unit revenue), and its HLP dashboard shows fees/revenue tracked separately from TVL. The protocol’s economics imply external exposure through perpetuals and liquidation inventory, but not leverage/looping/restaking in the classic DeFi sense; the vault’s risk comes from warehousing positions, adverse liquidation flows, and market impact during rapid trends. I could not verify on-chain mechanics, unlock timing, or current TVL trend breakdown by product/chain from raw chain data in this run, so those items are Not verifiable as of 2026-08-29. For the same reason, a Dune-vs-DeFiLlama comparison is not verifiable here; DeFiLlama is the only independently visible current aggregator source I could confirm, and it indicates HLP is a distinct product within Hyperliquid rather than the whole chain. On sustainability, the yield is best viewed as activity-dependent: it should improve with higher perp/spot volume and liquidation flow, and weaken when volumes fall. That makes APY volatile and not structurally fixed; the available aggregator snippets show materially changing fee run-rates over time, which is consistent with cyclical trading activity rather than a stable subsidy stream. Claimed TVL, APY history, and product-level composition versus a live on-chain source are Not verifiable as of 2026-08-29 in this environment.

Evidence (4)

reserves

two sources

HLP’s reserve/treasury picture is not fully verifiable from the available independent sources, and the on-chain balance/custody split cannot be confirmed here. The protocol docs say HLP is “fully community-owned,” but that is a protocol-owned claim and should be treated as an unverified marketing claim without independent on-chain corroboration. What can be stated: third-party analytics place HLP TVL around $185.9M to $259.6M as of late August 2026, depending on provider and snapshot time. That indicates a large, externally observed pool, but these pages do not establish reserve policy, custody arrangement, or treasury control. The only clearly identified address in the retrieved material is a Treasury Multisig on Hyperliquid-related infrastructure: 0xCBF400610DBF462fE316D8A7db6Ba78d57E43d7b. However, the source is a HyperLend contract-address page, not an HLP reserve disclosure, so the relationship to HLP reserves is not verifiable as of 2026-08-29. ## Findings

  • Size: HLP TVL reported at $185.9M and $259.6M on different analytics sites/snapshots.
  • Composition: Not verifiable as of 2026-08-29.
  • Custody: Not verifiable as of 2026-08-29.
  • Control: Not verifiable as of 2026-08-29.
  • Reserve policy: HLP is described by docs as community-owned, but no independently verified reserve policy was found.
  • Attestations: Not verifiable as of 2026-08-29. ## Contradiction callout
  • The observed HLP TVL figures disagree across independent analytics sources ($185.9M vs $259.6M), and no raw on-chain reconciliation is available here to resolve the gap.
Evidence (4)

tokenomics

one source

Hyperliquid’s HLP is a portfolio/LP token for the perp exchange, not a conventional governance or revenue‑sharing token. The protocol currently has no public native governance token (often expected as “HYPE”); all tokenomics below refer to HLP, not a chain gas token or governance asset. Because Hyperliquid runs on its own L1 and uses custom infrastructure, on‑chain verification is not possible here: *Not verifiable as of 2026‑08‑30*. ### Token existence and contract

  • HLP is a vault/LP share token representing a basket of assets that back user positions on Hyperliquid perps.
  • It exists on Hyperliquid L1 only; there is no standard EVM contract address (no Ethereum/Arbitrum address). ### Supply, market cap, and FDV
  • HLP supply is elastic: it expands and contracts as users deposit/withdraw into the HLP vault; price per HLP reflects underlying portfolio value plus PnL.
  • No reliable circulating supply, market cap, or FDV data is published by independent analytics platforms; these are Not verifiable as of 2026‑08‑30. ### Utility and economic role
  • Primary utility: HLP is the LP share token for the unified liquidity vault that backs Hyperliquid perp trading; holders earn funding, fees, and PnL from traders over time.
  • HLP does not serve as governance for protocol decisions in any documented, independent source. ### Revenue share, buybacks, burns, staking, emissions
  • HLP holders effectively receive trading fee and funding flows via changes in HLP value, not via explicit revenue‑share payouts.
  • There is no independent evidence of buyback programs, token burns, staking rewards, or emissions schedules for HLP.
  • No separate treasury tokenomics (team/investor allocations, vesting, unlocks) are documented for HLP; those are Not verifiable as of 2026‑08‑30. ### Unlocks, allocations, insider concentration
  • No public, independently verified schedule of HLP unlocks exists.
  • Team/investor/treasury/community allocations and insider wallet concentration for HLP or a native governance token are Not verifiable as of 2026‑08‑30. ### Controls and risk knobs
  • Because Hyperliquid L1 is not EVM, standard checks for mint/blacklist/fee‑switch functions and admin control cannot be performed here; status is Not verifiable as of 2026‑08‑30. ### Liquidity and listings
  • HLP functions as an *internal vault share* and is not broadly listed on external DEXs or CEXs as a tradable token according to available independent coverage.
  • External liquidity depth and main listings for HLP are therefore Not verifiable as of 2026‑08‑30. ### Key institutional takeaway Treat HLP as non‑governance LP/vault exposure to Hyperliquid perp liquidity rather than a standard token with fixed supply, VC allocations, and unlock schedules. Most granular tokenomics (supply, unlocks, admin rights) remain unverified without direct access to Hyperliquid L1 data.
Evidence (2)

Stress scenarios

stress scenario - bitcoin price falls below $10000

two sources

A BTC crash below $10,000 would likely create a *high-stress liquidation environment* for Hyperliquid HLP, because HLP is the protocol’s backstop liquidator and absorbs positions when the order book cannot close them cleanly. In such a scenario, HLP’s PnL would depend on the size, direction, and concentration of outstanding leveraged BTC and correlated positions; losses would flow directly to HLP depositors because they share the vault’s profits and losses. What can be said with confidence is that Hyperliquid’s liquidation waterfall is: order-book liquidation first, then the Liquidator Vault/HLP, then the insurance fund, and only then ADL if losses or negative-equity conditions persist. That means a severe BTC drawdown does *not* automatically imply protocol failure, but it does increase the probability that HLP must warehouse more toxic flow and could suffer realized losses if liquidations unwind worse than entry prices. The key uncertainty is *magnitude*: none of the retrieved sources provide a verifiable, protocol-specific stress test for BTC < $10,000, and I cannot verify current HLP balance sheet, open interest by chain, or liquidation capacity from on-chain data in this run. Not verifiable as of 2026-08-29. A relevant historical analogue is the October 10, 2025 flash crash, which Coingecko says added an estimated $41.5M to HLP PnL in a single weekend; that shows HLP can benefit from volatility, but it also confirms that large shock events materially change vault performance. So the practical stress-case reading is: extreme BTC downside would most likely raise liquidation volume, increase HLP’s exposure to adverse fills, and potentially trigger insurance-fund or ADL use if losses exceeded HLP’s ability to absorb them. The exact loss size under BTC < $10,000 is not verifiable from the available sources.

Evidence (4)

stress scenario - largest collateral depegs 20%,

two sources

Under a 20% depeg of the largest collateral asset, the key risk is not a protocol insolvency claim but a collateral-value shock that can push leveraged accounts below maintenance margin and trigger liquidations, with HLP absorbing distressed flow when the book cannot clear it. Hyperliquid’s docs say liquidation starts when equity falls below maintenance margin, and for larger liquidations only 20% of the position is sent to the book at a time; if liquidation is not successful and equity falls below 2/3 of maintenance margin, the liquidator vault takes over. That means a 20% collateral depeg can materially increase forced-selling pressure and HLP backstop usage if the stressed collateral is widely used in margining, but the exact loss under this scenario is Not verifiable as of 2026-08-29 because the on-chain collateral composition and live exposure are not available here. The most relevant prior stress signal is the March 2025 ETH liquidation event, where Hyperliquid said HLP lost about $4 million and described it as a predictable outcome under extreme conditions, not an exploit. Public reporting also notes the protocol subsequently raised margin requirements to reduce systemic impact from large positions. However, those sources do not quantify HLP’s loss for a 20% collateral depeg scenario, so any dollar estimate would be speculative and is Not verifiable as of 2026-08-29. If you want, I can turn this into a compact risk memo with: impact, transmission path, mitigants, and what data would be needed to size the exposure.

Evidence (4)

stress scenario - committed fraud by the DAO or owners

two sources

For a stress scenario of committed fraud by the DAO or owners, I found no verifiable evidence in the provided sources that Hyperliquid HLP’s DAO, owners, or core operators committed fraud. The available material instead describes market-manipulation attacks against HLP and a protocol response, not insider fraud or embezzlement. The strongest directly relevant source says HLP is fully community-owned, which cuts against a simple “owner fraud” framing, but that statement is from Hyperliquid’s own docs and is therefore only an unverified protocol claim absent on-chain verification here. What is verifiable from the search results is that HLP has suffered repeated liquidation/oracle/manipulation incidents in which traders engineered losses to the vault, and some reports say Hyperliquid used emergency measures such as suspending deposits/withdrawals or overriding oracle prices to contain damage. Those events are operational and market-structure risks, not evidence of DAO fraud. So, for risk assessment purposes, the correct conclusion is: committed fraud by the DAO/owners is not verifiable as of 2026-08-29. The more material, evidenced stress case is external manipulation causing HLP losses and emergency governance intervention.

Evidence (6)

stress scenario - primary yield source negative 30d,

unverified

Stress case: primary yield source negative over 30 days means HLP’s main return engine is no longer contributing positively over the last month, so depositor returns depend on whether spread capture, liquidation gains, and fee accrual can offset losses. HLP’s return stream is explicitly *variable* and backward-looking rather than fixed, and its earnings come from market making, liquidations, and trading-fee share; in adverse conditions, those components can turn negative net of hedging and inventory losses. For a stress assessment, the key implication is that a negative 30d primary yield is consistent with a period where HLP is paying more in adverse execution, inventory revaluation, or loss events than it earns from its usual sources. Independent writeups also note that HLP can post negative APR / drawdown periods and that returns are volatile rather than stable, with risk concentrated in stressed markets and unusual liquidation or one-sided flow events. In practice, this should be treated as a high-risk, path-dependent vault, not a stable yield product: a negative 30-day primary yield can happen even if longer-window performance remains positive, and the sign of the 30-day figure matters more than annualized marketing snapshots in a stress scenario. Not verifiable as of 2026-08-29: the exact 30-day primary-yield percentage for Hyperliquid HLP, because Dune/on-chain verification is unavailable in this run and the available web sources do not provide a directly auditable 30-day on-chain metric.

Evidence (5)

Governance & Legal

governance

two sources

Hyperliquid HLP governance is only partially verifiable from the gathered web sources, and the strongest verified point is that control is stake-weighted/validator-based, not a classic token-holder DAO with one-person-one-vote. The protocol docs and reporting indicate that validators vote by stake weight and that the foundation runs a large share of stake; one July 2026 analysis says Hyper Foundation-run validators held about 49.3% of staked HYPE, with the remaining 50.7% spread across 22 other operators, implying governance is highly concentrated even if formally decentralized. There is no verifiable evidence of an independent timelock or formal multisig governance guardrail in the material gathered. Hyperliquid’s docs do describe native multisig for user accounts, but that is an account-security feature, not proof of a protocol timelock or governance multisig controlling funds/contracts. The proposal process appears to be via HIPs / validator voting, but details such as proposal thresholds, quorum, and whether voting is symbolically vs. decisively DAO-led are Not verifiable as of 2026-08-29 from the non-primary sources available. On control of dev/contracts/frontend/funds, the only source that directly addresses the front-end says the website-hosted interface is separate from the protocol and that “the Company does not own, control, or operate Hyperliquid,” but that statement is from a terms document hosted off the protocol site and is not independently corroborated here. The company/legal-entity details, jurisdiction, registration number, and directors were Not verifiable as of 2026-08-29 from the gathered sources. For governance concentration, the available reporting consistently points to foundation-heavy validator concentration rather than a broad DAO. A July 2026 piece says foundation-run validators held ~49.3% of staked HYPE and notes the key dispute is whether that stake concentration translates into effective control over votes and validator outcomes.

Evidence (6)

legal & regulatory

one source

Hyperliquid HLP is a yield product on the Hyperliquid L1 derivatives DEX; the legal picture is mostly driven by Hyperliquid’s status and ToS, not on-chain data (which is Not verifiable as of 2026-08-29). ### Entity & Jurisdiction

  • Public sources indicate Hyperliquid operates without clearly disclosed legal entity, jurisdiction, or corporate structure on its app or main public materials.
  • No reliable filings or registrations (e.g., SEC, FCA, MAS) are visible via open web search as of 2026-08-29. This materially increases regulatory uncertainty. ### Terms of Service / User Restrictions
  • Hyperliquid publishes platform Terms of Service including restrictions on use by residents of certain jurisdictions commonly associated with derivatives/securities regulation (e.g., the U.S., sanctioned countries).
  • These restrictions are self-declared and enforcement appears to be mainly via IP/geolocation and account controls, but implementation is Not verifiable as of 2026-08-29. ### KYC / AML
  • The core Hyperliquid app is marketed as a non-custodial, on-chain derivatives exchange that allows wallet-based access.
  • No standard full KYC onboarding is evident for typical users; account creation is wallet-based. This suggests limited traditional AML controls compared with centralized exchanges.
  • Whether any enhanced KYC/AML applies to large or institutional accounts is Not verifiable as of 2026-08-29. ### Product Classification (HLP)
  • HLP appears to be a pooled liquidity / yield product that provides capital to Hyperliquid’s perpetuals market, earning fees and possibly funding-rate flows.
  • Economically, this can resemble:
  • Derivatives exposure (funding, mark-to-market PnL of traders using the pool).
  • Potential collective investment scheme characteristics, depending on jurisdictional interpretation.
  • There is no clear external legal classification (security vs derivative vs fund) from regulators or courts as of 2026-08-29. ### Warnings, Enforcement, Sanctions, Court Cases
  • No public regulatory enforcement actions, sanctions listings, or court cases specifically naming “Hyperliquid” or “HLP” were found in open web sources as of 2026-08-29.
  • Absence of evidence is not assurance of regulatory comfort; derivatives + yield + retail access is a high-scrutiny profile. ### Data Protection / Privacy
  • Hyperliquid collects limited off-chain data relative to centralized exchanges, but detailed privacy policy, data storage locations, and GDPR/CCPA compliance posture are not clearly documented in independent sources. Their claims, if any, would be unverified marketing claims. ### Legal Structure vs Actual Risk
  • Structural opacity (no clear entity/jurisdiction), derivatives-based yield, partial geo-blocking, and limited KYC together imply:
  • Elevated regulatory risk (retroactive classification, enforcement, or access restrictions).
  • Counterparty / recourse risk: unclear who is legally responsible if the platform fails or is shut down.
  • Institutional users should treat HLP as high regulatory-uncertainty exposure, requiring enhanced internal approvals and scenario analysis.
Evidence (2)

Stability

stability

one source

Not verifiable as of 2026-08-29. The available source only confirms that HLP uses USDC on Hyperliquid L1 and that USDC is natively minted there, but it does not provide a reliable incident history of any USDC depeg events for HLP. Because no on-chain verification is available in this run and the web result set does not document depeg count, last occurrence, or magnitude, those specifics remain unverified.

Evidence (2)

Risks & Strengths

risks

two sources

Top 5 risks for Hyperliquid HLP are:

  • Market-making / counterparty risk: HLP is effectively taking the other side of venue traders, so strong directional trends or volatile markets can turn strategy PnL negative.
  • Liquidation / tail-loss risk: HLP can absorb underwater positions from liquidations, including illiquid tokens, which can create sharp drawdowns during stress events.
  • Protocol / L1 risk: HLP is tied to Hyperliquid’s own chain and core system, so bugs, downtime, consensus failures, or emergency actions at the protocol layer can impair vault operation.
  • Concentration / shared-loss risk: HLP losses are socialized across depositors, and large exposure to a single venue or market regime can amplify damage if losses cluster.
  • Oracle / third-party market risk: Third-party markets and price inputs can be manipulated or fail, especially as Hyperliquid expands via builder markets and more complex listings, creating additional loss channels. Not verifiable as of 2026-08-29: exact HLP TVL, chain-wide exposure percentages, and on-chain incident magnitudes were not confirmed with raw on-chain data in this run.
Evidence (3)

strengths

two sources

Top 5 strengths of Hyperliquid HLP are: 1) Community ownership and accessibility — HLP is described as a protocol vault that anyone can deposit USDC into, and the vault is fully community-owned, which broadens access to market-making economics that are usually reserved for privileged participants. 2) Multiple revenue engines — it combines market making, liquidation backstopping, USDC supply in Earn, and a share of trading fees, so it is not dependent on a single source of yield. 3) Protocol-aligned risk absorption — HLP acts as a backstop during liquidations, which helps keep Hyperliquid’s markets functioning through stress and supports exchange liquidity. 4) Designed for trading infrastructure, not just passive yield — the vault is integrated into Hyperliquid’s on-chain order book and exchange workflow, so its role is operationally central rather than an isolated DeFi wrapper. 5) Simple user experience and USDC denomination — deposits are in USDC and the docs specify a 4-day withdrawal lock-up after the most recent deposit, making the product straightforward to understand and use. A useful nuance is that some third-party writeups also emphasize HLP’s attractive risk-adjusted behavior and its role in keeping spreads tight, but those are secondary interpretations rather than the core protocol-described strengths.

Evidence (5)

Methodology & Limitations

  • On-chain metrics: not verifiable — Dune phase 2 is not enabled.
  • 3 of 24 fact categories not yet collected.
  • Fact verifiability: 15 two independent sources, 5 one source, 1 unverified.
  • Oldest fact verification date: 2026-08-29.