Governance & History
ADRs, Mimir context, milestones, incidents, and research. Vote percentages are shown only when source-backed.
Curated·Last verified 2026-07-13· 7 sources
retrieval details
+6 sources
retrieval details
retrieval details
retrieval details
retrieval details
retrieval details
retrieval details
Use this page for
- Source-backed ADR, Mimir, incident, milestone, and recovery-history context.
- Dated incident and governance records with explicit current-review labels.
Verify elsewhere before claiming
- Current node consensus, live Mimir values, active recovery status, or final governance outcome.
- That a historical incident record proves present-day network safety or solvency.
Continue From Here
Move from dated governance and incident records into current diagnostics, recovery review, or the historical recovery path before making present-tense claims.
Claim checks by type
Start with the claim type. Governance records are useful for dated decisions and history; live controls, incident root-cause wording, recovery status, and community interpretation need separate proof paths.
Operational Mimir claim
- Use For
- Whether trading, signing, LP actions, churning, TCY controls, or chain operations are active now.
- Verify
- Use Network diagnostics and current THORNode/Mimir evidence before using present-tense availability wording.
- Do Not Claim
- Do not infer live availability from a proposal, incident archive, milestone, or missing halt mention.
ADR or proposal status
- Use For
- What an ADR, proposal, milestone, or governance record said at the cited review point.
- Verify
- Use the record source, source-map guidance, and any linked live tracker before calling a design active.
- Do Not Claim
- Do not treat proposed, draft, needs-review, or historical records as final live protocol behavior.
Incident root-cause claim
- Use For
- Exploit cause, affected vault/chain scope, patch wording, migration context, and dated security lessons.
- Verify
- Use incident reports plus the Network Security path before summarizing safety or cryptographic details.
- Do Not Claim
- Do not convert a dated exploit report, restart, or patch into proof of present-day safety.
Recovery or solvency claim
- Use For
- Post-exploit recovery state, THORFi/TCY recovery framing, and records tagged for current review.
- Verify
- Use the current recovery tracker, TCY recovery timeline, dated upgrade notes, and live diagnostics together.
- Do Not Claim
- Do not claim final recovery, par redemption, current solvency, or product availability from one record.
Community sentiment claim
- Use For
- Debate topics, open questions, or how contributors described tradeoffs in community channels.
- Verify
- Use community sources only as context, then confirm protocol facts through official or live sources.
- Do Not Claim
- Do not present Discord chatter as canonical protocol proof or representative sentiment without sampling.
Current Incident & Recovery Tracker
Conservative tracker for records explicitly tagged as current or needing current recovery review. Historical unresolved records remain in the incident archive below unless they are re-verified for current tracking.
Show summary and claim-check detail
Tracked records
3
Current or needs-review records promoted from the full governance and incident archive.
Evidence path
Record + live check
Use the full dated record first, then current Network diagnostics before present-tense claims.
Check Before Claiming
Savers or Lending are available now
- Start with
- Archived feature sources
- Verify
- Official archived docs and any current interface/source claiming reactivation.
- Do not claim
- Do not describe archived mechanics as current deposit or borrowing instructions.
Check Before Claiming
A claimant can claim or stake TCY right now
- Start with
- TCY timeline plus live network diagnostics
- Verify
- TCY guide, official claim interface, and TCY Mimir controls such as TCYCLAIMINGHALT or TCYSTAKINGHALT.
- Do not claim
- Do not infer availability from historical TCY launch copy alone.
Check Before Claiming
TCY restored the original debt value
- Start with
- TCY source caveats
- Verify
- Market and distribution evidence outside this tracker; official developer docs say full recovery is not guaranteed.
- Do not claim
- Do not state par recovery, redemption value, or investment outcome as fact.
Check Before Claiming
Post-exploit recovery is complete
- Start with
- Current recovery tracker records
- Verify
- Dated exploit reports, upgrade notes, ADR/proposal status, and live network diagnostics.
- Do not claim
- Do not convert a restart, patch, or proposal into proof of final recovery completion.
Incident record
GG20 Vault Exploit
Exploit Report #2 describes a cryptographic GG20/TSS attack: a validator planted malformed Paillier key material and used repeated failed MTA rounds to leak key-share fragments before signing alone.
Approximately $10M-$10.7M drained from one vault; normal signing and fund movements resumed after v3.19.1 verification, while migration away from GG20 remains planned and current vault safety still needs live evidence.
- Use This For
- Dated official exploit, restart, patch, and migration context for the May 2026 GG20 vault incident.
- Verify Next
- - Network diagnostics for current halts, signing, route limits, and source warnings.
- - Security deep dives for the dated GG20/TSS attack scope and migration wording.
- - TCY controls only when the claim is about current claim, stake, distribution, unstake, or trade actions.
- Boundary
- Do not use the incident record, restart, or v3.19 notes as proof that recovery is complete, users are made whole, or present-day safety is guaranteed.
retrieval details
+4 sources
retrieval details
retrieval details
retrieval details
retrieval details
Incident record
Memoless Transaction Halt Cycle
Community reporting and live Mimir snapshots show a memoless halt, re-enable with a raised transaction cost (MEMOLESSTXNCOST=200000), a spam-driven re-halt, and HALTMEMOLESS=1 active after the v3.20.0 upgrade. The official release notes include memoless ERC-20 handler and refund work in the same window.
Memoless flows were repeatedly unavailable for roughly five days; ordinary memo-based swaps continued when global trading controls were clear. Current state remains a Mimir snapshot question.
- Use This For
- August 2026 memoless halt, cost vote, spam re-halt, and v3.20.0-era feature work.
- Verify Next
- - Current HALTMEMOLESS and MEMOLESSTXNCOST values in Network diagnostics before any present-tense memoless claim.
- - The v3.20.0 release notes for dated handler, refund, and chain-client work.
- - Route quotes for concrete swaps; a memoless halt does not prove ordinary swap routes are blocked.
- Boundary
- This record proves a scoped availability cycle, not a global outage or a permanent fee level. Cost parameters can be re-voted after the incident window.
retrieval details
+1 source
retrieval details
Governance record
ADR-028 Recovery Path
ADR-028 is Accepted in the v3.19.0 source and specifies a one-time conciliation migration for exploit-created accounting gaps; that allocation decision is not proof that every loss was restored.
Accepted; implemented in v3.19.0
- Use This For
- Accepted ADR-028 decision and one-time v3.19.0 conciliation migration for the May 2026 exploit-created accounting gap.
- Verify Next
- - The immutable v3.19.0 ADR before describing its reserve, Saver, treasury, or stuck-swap allocation waterfall.
- - Current release and Network diagnostics before converting the historical migration into present protocol availability or safety.
- - TCY controls and official interface evidence before saying a user can claim, stake, trade, or receive distributions now.
- Boundary
- ADR-028 acceptance proves the conciliation decision and migration design, not that every loss was restored, recovery is complete, current vaults are safe, or any user action is enabled.
retrieval details
+3 sources
retrieval details
retrieval details
retrieval details
Dated Archive Map
Use the lane map before diving into the archive. Counts are navigation aids, not health scores, and every lane still needs the claim-specific checks above. Read each record or posture badge on its own terms before treating dated material as current protocol behavior.
Current recovery lane
Start here for records explicitly promoted from the archive into current recovery review.
- Archive mix
- promoted records
Governance records lane
Use for ADRs, operational parameters, recovery-path records, and historical unwind context.
- Archive mix
- 2 operational/current-only
Incident archive lane
Use for exploit root-cause, illicit-flow, and recovery-history records without flattening them into today.
- Archive mix
- 3 current/review, 2 historical-open
Research and milestones lane
Use for timeline context and third-party or ecosystem analysis before checking current evidence.
- Archive mix
- 6 milestones, 3 reports
Governance Records
Dated governance and operational records. The status badge describes the record evidence posture; use live diagnostics before turning it into a current action claim.
THORFi Unwind
Deprecation and unwind process for Savers and Lending liabilities.
source retrieval details
+3 sources
retrieval details
retrieval details
retrieval details
ADR-028 Recovery Path
ADR-028 is Accepted in the v3.19.0 source and specifies a one-time conciliation migration for exploit-created accounting gaps; that allocation decision is not proof that every loss was restored.
source retrieval details
+3 sources
retrieval details
retrieval details
retrieval details
Operational Mimir Halts
Operational Mimir parameters such as HALTTRADING and HALTSIGNING can pause network activity and should be read from THORNode.
source retrieval details
+1 source
retrieval details
ADR-026 Dynamic L1 Fees
Dynamic per-thorname and per-pair L1 minimum fee experiment. Official ADR text is proposed-design context while live THORNode snapshots may show enabled Mimirs and dynamic-fee records.
source retrieval details
+3 sources
retrieval details
retrieval details
retrieval details
ADR-030 Delegated Node Operator Permissions
Proposed ADR for a per-node delegate registry: the operator could grant MAINT, LEAVE, bond-provider-whitelist, and set-fee permissions to delegate addresses with optional block-offset expiry. Custody, UNBOND, OPERATOR_ROTATE, and delegation management would stay exclusive to the operator key. The official v3.20 recap says the framework ships in v3.20 code with activation expected in v3.21; no delegate registry is active on mainnet yet.
source retrieval details
ADR-031 THORChain x Rujira Alignment
Official blog post reports that after the initial ADR-020 collaboration period expired, nodes voted on the future of the Rujira cooperation and selected Option 1, confirming and reinforcing it with an updated revenue split. Treat vote mechanics and any payout configuration as source-dated claims until protocol releases confirm them.
source retrieval details
Milestones
THORChain Founded
A pseudonymous core team founded THORChain in 2018.
retrieval details
Multichain Chaosnet Launch
Multichain Chaosnet launches with native cross-chain swaps across five networks while safeguards remain in place on the path to mainnet.
retrieval details
THORNode v3.0.0 Release
THORNode v3.0.0 upgrades to Cosmos SDK v0.50 and lays groundwork for future App Layer functionality.
retrieval details
+1 source
retrieval details
Savers and Lending Deprecated
Official archived pages say Savers and Lending were permanently deprecated on January 4, 2025, are no longer available, and remain documented only for historical reference.
retrieval details
+1 source
retrieval details
GG20 Vault Exploit and Emergency Halt
Official reports say attackers drained roughly $10M from one vault after an upstream GG20/TSS cryptographic attack. v3.19.0 supplied emergency restart controls, v3.19.1 patched the incident class, and migration away from GG20 remained planned.
retrieval details
+3 sources
retrieval details
retrieval details
retrieval details
THORNode v3.20.0 Upgrade
The official v3.20.0 tag notes a proposed block of 27,580,000 on 25-Aug-2026, a private binary with security patches, the ADR-028 residual migration (Migrate17to18), TSS/Bifrost hardening, memoless ERC-20 work, and XMR/ZEC chain-client updates. The blog recap adds churn resumption prep, operational POL System Income and Asset Whitelist Mimirs, and an experimental Stable Reserve shipping disabled.
retrieval details
Security Incidents
Showing 6 of 6 incident records. Filter by posture before turning a dated incident into a current recovery or safety claim.
ETH Router Exploit #1
ResolvedETH router/Bifrost exploit where an attack contract in front of the router caused fake ETH deposits to be read as real deposits. Approximately $8M impact; the post-mortem says no other chains or assets were affected.
Dated resolved incident record; still use current diagnostics for present-tense safety claims.
source retrieval details
ETH Router Exploit #2
ResolvedSecond ETH router exploit where a fake router and malicious deposit event path caused real ERC-20 refunds from the system. Approximately $8M across economically significant ERC-20 assets, followed by a broader recovery and audit plan.
Dated resolved incident record; still use current diagnostics for present-tense safety claims.
source retrieval details
THORFi Unwind
Historical open recordSavers and Lending were deprecated and moved to archived documentation after THORFi liability concerns. Deprecated Savers and Lending products; Proposal 6 and current TCY docs establish the recovery-token mechanics, but do not prove par recovery or that every claimant was made whole.
Kept in the archive as unresolved historical context; not promoted to current recovery status without re-review.
source retrieval details
+3 sources
retrieval details
retrieval details
retrieval details
Post-Bybit Laundering Flow
Historical open recordTHORChain saw controversial post-exchange-hack flow; this was not a THORChain protocol exploit. High-volume illicit-flow and interface-policy debate rather than a protocol drain.
Kept in the archive as unresolved historical context; not promoted to current recovery status without re-review.
source retrieval details
GG20 Vault Exploit
Current trackerExploit Report #2 describes a cryptographic GG20/TSS attack: a validator planted malformed Paillier key material and used repeated failed MTA rounds to leak key-share fragments before signing alone. Approximately $10M-$10.7M drained from one vault; normal signing and fund movements resumed after v3.19.1 verification, while migration away from GG20 remains planned and current vault safety still needs live evidence.
Promoted to the current recovery tracker above; pair this dated record with live diagnostics.
source retrieval details
+4 sources
retrieval details
retrieval details
retrieval details
retrieval details
Memoless Transaction Halt Cycle
Current trackerCommunity reporting and live Mimir snapshots show a memoless halt, re-enable with a raised transaction cost (MEMOLESSTXNCOST=200000), a spam-driven re-halt, and HALTMEMOLESS=1 active after the v3.20.0 upgrade. The official release notes include memoless ERC-20 handler and refund work in the same window. Memoless flows were repeatedly unavailable for roughly five days; ordinary memo-based swaps continued when global trading controls were clear. Current state remains a Mimir snapshot question.
Promoted to the current recovery tracker above; pair this dated record with live diagnostics.
source retrieval details
+1 source
retrieval details
Research
Dated analysis and roadmap context. Treat these as period framing until current protocol, route, or recovery sources agree.
2025-04-24 · Messari · Drexel Bakker
THORChain Q1 2025 Brief
Quarterly analysis covering affiliate volume, TVL, RUNE price performance, swap activity, and THORFi liabilities.
retrieval details
2025-07-09 · Nine Realms · Nine Realms
THORChain Q2 2025 Ecosystem Report & Q3 Roadmap
Ecosystem report with Q3 roadmap priorities and development updates.
retrieval details
2024-10-07 · Nine Realms · Nine Realms
THORChain Q3 2024 Ecosystem Report
Quarterly ecosystem report covering protocol performance, development milestones, and community initiatives.