UYield · Security sheet · v0.3 · 2026-08-27

Boring by design.

This page is deliberately plain. Everything below is verifiable on-chain or linked to its source. Entries marked [PH-xx] are placeholders pending partner documents.

Custody model

Where funds sitIn the vault contract. UYield never holds funds and has no key that can move them.
How you transactYour wallet signs transactions sent directly to the vault contract. The UYield site is an interface.
What curators can doAllocate within whitelisted markets and published limits; rebalance; set caps.
What curators cannot doWithdraw depositor funds, change fees without notice, or move capital outside the whitelist.
Who can pause[PH-04] Vault admin / security council roles per infrastructure documentation.

Audits

Vault infrastructure[PH-11] Independent audit reports for the vault contracts will be linked here, with scope, firm, and date.
Curator controls[PH-08] Operational controls and monitoring described by each curator.
Bug bounty[PH-12] Omitted until confirmed.

Monitoring and incidents

MonitoredVault state, settlement events, price-per-share bounds, RPC health.
How you're toldStatus page, in-app banner, and email if you opted in. [PH-29]
Kill switchesDeposits can be paused per vault; withdrawals stay available unless the contract itself blocks them.

Contract addresses

VaultChainStandardAddress
Stable YieldEthereumERC-75400xMOCK000000000000000000000000000000000001
RWA YieldEthereumERC-46260xMOCK000000000000000000000000000000000002

Rendered from the vault registry so this table cannot drift from the app.

Official domains

We only operate at: uyield.finance · app.uyield.finance · docs.uyield.finance · getuyield.com. Anything else is not us.