protocol identification
one sourceIdentification (as of September 4, 2026)
- Name: Aave Umbrella. Website: https://aave.com. Docs: Aave Help Center and the DAO’s technical repository. Category: DeFi protocol-resilience / automated bad-debt backstop; users stake wrapped aTokens or GHO, earn rewards, and accept asset-specific slashing risk.
- Launch: Activated on June 5, 2025 on Ethereum mainnet.
- Chains: Ethereum mainnet is verified for the supplied scope. The architecture is multi-chain capable, but additional-chain deployments were not assessed here.
- Native token: None identified. AAVE remains the Aave ecosystem governance token, not an Umbrella-native token. Umbrella issues per-asset StakeTokens (e.g., stkwaUSDC, stkwaUSDT, stkwaWETH, stkGHO), which are not a single native token. Ethereum main contracts
- Umbrella core proxy:
0xD400fc38ED4732893174325693a63C30ee3881a8 - RewardsController:
0x4655Ce3D625a63d30bA704087E52B4C31E38188B - Current StakeTokens: stkwaUSDC
0x6bf183243FdD1e306ad2C4450BC7dcf6f0bf8Aa6; stkwaUSDT0xA484Ab92fe32B143AEE7019fC1502b1dAA522D31; stkwaWETH0xaAFD07D53A7365D3e9fb6F3a3B09EC19676B73Ce; stkGHO0x4f827A63755855cDf3e8f3bcD20265C833f15033. Governance’s address list cross-checks the core and RewardsController; Etherscan confirms the core contract, proxy/implementation relationship, and verified source. - Dune cross-check: Not verifiable as of September 4, 2026. Therefore the requested two-source cross-check *including Dune* is incomplete. Explorer verification: core verified; RewardsController activity is confirmed on Etherscan, but a direct verified-source page was not independently established. Fork lineage Umbrella is not a fork of an unrelated protocol; it is an Aave DAO/BGD Labs redesign and intended replacement for Aave’s legacy Safety Module. Key changes are asset-specific ERC-4626 StakeTokens, wrapped-aToken/GHO deposits, automated deficit-triggered slashing, a revised RewardsController, and governance-controlled cooldown/roles. External reviews were completed by StErMi, MixBytes, Ackee, and Certora. Malicious-modification history in similar Aave Safety Module forks: Not verifiable as of September 4, 2026.