{"investigation":{"slug":"transit-finance","entity_name":"Transit Finance","trust_score":62,"severity_base":63,"score_modifier":-1.4,"confidence":0.83,"status":"published","content_type":"investigation","summary":"Transit Finance (also known as Transit Swap) is a cross-chain DEX aggregator supporting over 122 decentralized exchanges across Ethereum, BNB Chain, TRON, Solana, Polygon, and other networks. The protocol has suffered two confirmed security exploits: a $28.9 million hack in October 2022 due to an arbitrary external call vulnerability in its routing contract, with approximately $18.9 million recovered; and a second $1.88 million exploit in May 2026 via a deprecated TRON smart contract that remained on-chain and exploitable years after official deprecation. ZachXBT flagged the protocol amid broader DeFi monitoring, and the 2022 attacker routed funds through OFAC-sanctioned Tornado Cash.","sections":[{"content":"Transit Finance operates Transit Swap, a multi-chain decentralized exchange (DEX) aggregator that consolidates liquidity across over 122 integrated exchanges and 4 cross-chain bridges. The platform supports access to more than 5 million tokens across Ethereum, BNB Chain, Solana, TRON, Polygon, Avalanche, Arbitrum, Optimism, Fantom, and other networks. Product offerings include cross-chain swaps, fiat on/off-ramp connectivity via seven providers, on-chain analytics, an NFT marketplace, and advanced trading tools. Transit Swap launched in approximately June 2021. The protocol does not publicly disclose individual founders or named team members. Transit Finance announced a bug bounty program offering up to $1 million for security vulnerability disclosures and established a Transit Security Fund that injects 10% of monthly revenue into a security reserve. CertiK Skynet assigns Transit Swap a score of 61.66 (B rating, approximately ranked #597) as of 2026, noting only one third-party audit on record, no CertiK audit coverage, no verified team identity, and no active bug bounty through CertiK or its partners.","heading":"Protocol Overview","sources":[{"url":"https://docs.transit.finance/","name":"docs.transit.finance","type":"other","credibility":3},{"url":"https://iq.wiki/wiki/transit-finance","name":"iq.wiki","type":"other","credibility":3},{"url":"https://skynet.certik.com/projects/transit-swap","name":"skynet.certik.com","type":"other","credibility":3}],"severity":"medium"},{"content":"On October 2, 2022, Transit Finance suffered its first major security breach. An attacker exploited a critical input validation failure in Transit Swap's routing proxy contract, specifically in the _claimTokens function. The routing bridge contract did not check the parsed swap contract address or the calldata passed in by users during token exchanges, enabling arbitrary external calls. By crafting malicious calldata, the attacker triggered the transferFrom() function with attacker-specified parameters and redirected tokens from users who had previously granted blanket approvals to the Transit Swap permissions management contract. All wallets holding prior approvals were effectively exposed. The exploit affected multiple chains, primarily Binance Smart Chain (BSC) and Ethereum. SlowMist's analysis confirmed the root cause as failure of the routing proxy to inspect user-provided parameters before downstream processing. Reported loss figures vary between sources: BeInCrypto and The Block reported approximately $21 million; QuillAudits and BankInfoSecurity reported approximately $28.9 million. The discrepancy likely reflects differences in token valuation methodology. An arbitrage bot additionally front-ran the hacker and extracted an estimated $1.1 million in BUSD separately. Security firms PeckShield, SlowMist, Bitrace, TokenPocket, and CertiK collaborated with Transit Finance's internal team to track the attacker via IP address, email, and on-chain address fingerprinting. Within approximately 48 hours of the attack, the attacker returned roughly $18.9 million — approximately 70% of the larger loss figure — retaining approximately $2 million as a self-declared bug bounty. The attacker also sent 2,500 BNB (approximately $686,000) to the OFAC-sanctioned Tornado Cash privacy mixer and transferred 10,000 BNB (approximately $2.74 million) to victims by October 10, 2022. The attacker alleged they could have exploited the protocol for up to $100 million. Transit Finance's smart contracts were unverified at the time of the exploit and the project's GitHub repository did not share source code publicly, preventing white-hat identification of the vulnerability in advance.","heading":"October 2022 Exploit — Arbitrary External Call Vulnerability ($28.9M)","sources":[{"url":"https://www.bankinfosecurity.com/hacker-steals-29m-from-transit-finance-returns-19m-a-20196","name":"bankinfosecurity.com","type":"other","credibility":3},{"url":"https://www.coindesk.com/business/2022/10/03/transit-swap-exploiter-returns-large-chunk-of-289m-hack","name":"coindesk.com","type":"other","credibility":3},{"url":"https://www.coindesk.com/business/2022/10/10/transit-finance-hacker-returns-274m-to-victims-sends-686k-to-tornado-cash","name":"coindesk.com","type":"other","credibility":3},{"url":"https://quillaudits.medium.com/transit-finance-28-9m-exploit-analysis-quillaudits-5d8228956102","name":"quillaudits.medium.com","type":"other","credibility":3},{"url":"https://slowmist.medium.com/cross-chain-dex-aggregator-transit-swap-hacked-analysis-74ba39c22020","name":"slowmist.medium.com","type":"other","credibility":3},{"url":"https://www.halborn.com/blog/post/explained-the-transit-swap-hack-october-2022","name":"halborn.com","type":"other","credibility":3},{"url":"https://medium.com/neptune-mutual/decoding-transit-finances-contract-vulnerability-977d2fda2897","name":"medium.com","type":"other","credibility":3},{"url":"https://beincrypto.com/hacker-exploits-21m-vulnerability-in-transit-swap/","name":"beincrypto.com","type":"other","credibility":3}],"severity":"medium"},{"content":"Following the October 2022 exploit, the attacker transferred 2,500 BNB (approximately $686,000 at the time) to Tornado Cash, which had been added to OFAC's Specially Designated Nationals (SDN) list on August 8, 2022 — approximately two months before the Transit Finance hack. The attacker framed the 10,000 BNB sent to Tornado Cash as a bug bounty, a characterization that security researchers and reporting outlets did not accept given the unauthorized nature of the exploit. The use of a sanctioned mixer to launder stolen funds is a significant red flag, though the conduct was that of the attacker rather than Transit Finance itself. Tornado Cash was subsequently delisted from OFAC sanctions in April 2025 following a Fifth Circuit Court of Appeals ruling in December 2024 that limited OFAC's authority over immutable smart contracts. At the time of the Transit Finance incident, however, interactions with Tornado Cash carried active U.S. sanctions exposure.","heading":"Use of OFAC-Sanctioned Tornado Cash (2022)","sources":[{"url":"https://www.coindesk.com/business/2022/10/10/transit-finance-hacker-returns-274m-to-victims-sends-686k-to-tornado-cash","name":"coindesk.com","type":"other","credibility":3},{"url":"https://www.bankinfosecurity.com/hacker-steals-29m-from-transit-finance-returns-19m-a-20196","name":"bankinfosecurity.com","type":"other","credibility":3},{"url":"https://home.treasury.gov/news/press-releases/jy0916","name":"home.treasury.gov","type":"other","credibility":3}],"severity":"medium"},{"content":"Transit Swap officially relaunched on October 21, 2022 after engaging SlowMist to complete a post-incident security audit. Following the incident, Transit Finance established the Transit Security Fund, committing 10% of monthly protocol revenue to a dedicated security reserve. The team announced a bug bounty program offering up to $1 million for discovered vulnerabilities and stated that it had implemented in-depth partnerships with multiple security companies. SlowMist's audit certificate for Transit Finance is publicly listed in SlowMist's audit certificate repository. Despite these measures, CertiK Skynet data as of 2026 indicates that the project still lacks full CertiK audit coverage, verified team identity, and an active third-party bug bounty via CertiK or its partners.","heading":"October 2022 Relaunch and Security Measures","sources":[{"url":"https://docs.transit.finance/announcement/announcement/relaunch","name":"docs.transit.finance","type":"other","credibility":3},{"url":"https://medium.com/@TransitSwap/transit-swap-is-officially-re-launch-abe58f242d28","name":"medium.com","type":"other","credibility":3},{"url":"https://skynet.certik.com/projects/transit-swap","name":"skynet.certik.com","type":"other","credibility":3},{"url":"https://www.slowmist.com/en/security-audit-certificate.html?id=928799684ad96ef4ed4b0c0fb12a5fae085456f874b19dc4300195b32a5a1431","name":"slowmist.com","type":"other","credibility":3}],"severity":"medium"},{"content":"On May 12–13, 2026, Transit Finance was exploited a second time. Blockchain security firm PeckShield identified and publicly flagged the breach. Approximately $1.875 million DAI stablecoins and roughly 1.37 ETH were drained from an early-version smart contract originally deployed on the TRON blockchain. Transit Finance stated this contract had been officially deprecated since 2022 but continued to exist on-chain, and alleged attackers exploited 'historical vulnerabilities within it.' The project stated that its current active smart contract system remained unaffected, having operated securely since the 2022 relaunch. Stolen funds were consolidated into a single newly created Ethereum wallet. Transit Finance sent an on-chain message to the attacker's wallet offering a bug bounty reward with a 48-hour window for voluntary return of funds. The team publicly committed to fully compensating all affected users and stated that an audit performed on May 12, 2026 confirmed the security of the current contract version. As of reporting, no confirmation of fund return by the attacker had been published. The incident is characterized by security analysts as emblematic of the risk posed by deprecated but undecommissioned smart contracts: formally announcing deprecation without revoking on-chain permissions or draining residual liquidity leaves user funds exposed to dormant vulnerabilities indefinitely.","heading":"May 2026 Exploit — Legacy TRON Contract ($1.88M)","sources":[{"url":"https://crypto.news/transit-finance-hack-drains-1-88m-from-cross-chain-protocol/","name":"crypto.news","type":"other","credibility":3},{"url":"https://www.web3isgoinggreat.com/single/transit-finance-hack","name":"web3isgoinggreat.com","type":"other","credibility":3},{"url":"https://www.ainvest.com/news/transit-finance-hack-1-88m-stablecoin-drain-flow-implications-2605/","name":"ainvest.com","type":"other","credibility":3},{"url":"https://nulltx.com/1-88m-reportedly-drained-in-transitfinance-exploit-that-exposes-hidden-risks-of-legacy-smart-contracts/","name":"nulltx.com","type":"other","credibility":3},{"url":"https://www.cryptotimes.io/2026/05/13/1-88m-drained-from-transit-finance-stolen-dai-sits-in-fresh-eth-wallet/","name":"cryptotimes.io","type":"other","credibility":3},{"url":"https://cryip.co/transit-finance-hacked-again-cross-chain-defi-protocol-loses-1-88-million-in-latest-exploit/","name":"cryip.co","type":"other","credibility":3},{"url":"https://phemex.com/news/article/transit-finance-to-compensate-users-after-tron-smart-contract-exploit-80916","name":"phemex.com","type":"other","credibility":3},{"url":"https://www.cryptopolitan.com/transit-finance-to-refund-hack-may-losses/","name":"cryptopolitan.com","type":"other","credibility":3}],"severity":"medium"},{"content":"Both Transit Finance exploits share a common thematic root: inadequate smart contract hygiene. The 2022 attack exploited insufficient calldata validation — the routing proxy contract failed to verify user-supplied parameters before executing downstream calls, enabling arbitrary external calls that redirected user-approved tokens. The 2026 attack exploited a deprecated TRON contract that remained deployed and callable on-chain for approximately three and a half years after official deprecation. Security analysts at NullTX noted that the 2026 incident exposed a structural gap between administrative deprecation announcements and technical contract decommissioning. Transit Finance's 2022 contracts were unverified and the GitHub repository withheld source code publicly, preventing independent security researchers from identifying the flaw before exploitation — a practice that Halborn Security characterized as 'security through obscurity' that fails in practice. CertiK Skynet's B-grade score of 61.66 for Transit Swap reflects limited third-party audit coverage and no verified team identity as risk factors persistent through 2026.","heading":"Technical Vulnerability Pattern — Recurring Smart Contract Risk","sources":[{"url":"https://skynet.certik.com/projects/transit-swap","name":"skynet.certik.com","type":"other","credibility":3},{"url":"https://www.halborn.com/blog/post/explained-the-transit-swap-hack-october-2022","name":"halborn.com","type":"other","credibility":3},{"url":"https://blog.solidityscan.com/transit-swap-hack-analysis-13c1e04e7de0/","name":"blog.solidityscan.com","type":"other","credibility":3},{"url":"https://nulltx.com/1-88m-reportedly-drained-in-transitfinance-exploit-that-exposes-hidden-risks-of-legacy-smart-contracts/","name":"nulltx.com","type":"other","credibility":3},{"url":"https://medium.com/neptune-mutual/decoding-transit-finances-contract-vulnerability-977d2fda2897","name":"medium.com","type":"other","credibility":3}],"severity":"medium"},{"content":"No regulatory actions by the SEC, CFTC, OFAC, DOJ, or other government bodies against Transit Finance, Transit Swap, or their associated operators were identified in publicly available records consulted for this investigation. The attacker in the 2022 incident used the then-OFAC-sanctioned Tornado Cash mixer; this conduct was attributable to the attacker rather than Transit Finance itself. Transit Finance does not publicly disclose its legal jurisdiction, corporate structure, or named team members, which limits regulatory accountability and independent compliance verification. The protocol operates across multiple jurisdictions through decentralized smart contracts. No enforcement actions or consumer protection orders were found in the sources reviewed.","heading":"Regulatory and Compliance Status","sources":[{"url":"https://www.bankinfosecurity.com/hacker-steals-29m-from-transit-finance-returns-19m-a-20196","name":"bankinfosecurity.com","type":"other","credibility":3}],"severity":"medium"}],"timeline":[{"date":"2021-06","event":"Transit Finance launches Transit Swap as a cross-chain DEX aggregator supporting Ethereum, BNB Chain, TRON, Polygon, and other networks.","source":"","date_original":"2021-06-01"},{"date":"2022-08-08","event":"OFAC adds Tornado Cash to the Specially Designated Nationals list. The attacker in the upcoming Transit Finance exploit will use this sanctioned mixer two months later.","source":""},{"date":"2022-10-02","event":"Transit Finance (Transit Swap) suffers first major exploit. An attacker exploits an arbitrary external call vulnerability in the _claimTokens function, draining approximately $21–28.9 million in user-approved tokens across BNB Chain and Ethereum.","source":""},{"date":"2022-10-03","event":"PeckShield, SlowMist, Bitrace, TokenPocket, and CertiK collaborate to track the attacker via IP address, email, and on-chain identifiers. Attacker returns approximately $18.9 million (~70%) and sends 10,000 BNB (~$2M) to Tornado Cash as alleged bug bounty.","source":""},{"date":"2022-10-06","event":"Additional $246,000 recovered from the 2022 attacker per QuillAudits analysis.","source":""},{"date":"2022-10-10","event":"Attacker transfers 10,000 BNB ($2.74M) to victims and separately routes 2,500 BNB ($686K) to OFAC-sanctioned Tornado Cash.","source":""},{"date":"2022-10-21","event":"Transit Swap officially relaunches after a SlowMist security audit. Transit Finance establishes Transit Security Fund (10% of monthly revenue) and announces bug bounty program up to $1 million.","source":""},{"date":"2024-12","event":"U.S. Fifth Circuit Court of Appeals limits OFAC's sanctions authority over Tornado Cash's immutable smart contracts, beginning the process that leads to Tornado Cash delisting.","source":"","date_original":"2024-12-01"},{"date":"2025-04","event":"U.S. Treasury delists Tornado Cash from OFAC sanctions following Fifth Circuit ruling.","source":"","date_original":"2025-04-01"},{"date":"2026-05-12","event":"Attacker exploits a deprecated TRON-deployed legacy smart contract, draining approximately $1.875 million DAI plus ~1.37 ETH. Funds moved to a newly created Ethereum wallet. PeckShield detects and flags the breach.","source":""},{"date":"2026-05-13","event":"Transit Finance sends on-chain message to attacker offering bug bounty with 48-hour window. Project publicly commits to fully compensating affected users and states current contract version is unaffected. ZachXBT flags the incident.","source":""}],"sources_used":[{"url":"https://docs.transit.finance/","name":"docs.transit.finance","type":"other","archive_url":"http://web.archive.org/web/20260511122536/https://docs.transit.finance/","credibility":3,"archive_timestamp":"2026-05-11T12:25:36+00:00"},{"url":"https://iq.wiki/wiki/transit-finance","name":"iq.wiki","type":"other","archive_url":"http://web.archive.org/web/20260610123742/https://iq.wiki/wiki/transit-finance","credibility":3,"archive_timestamp":"2026-06-10T12:37:42+00:00"},{"url":"https://skynet.certik.com/projects/transit-swap","name":"skynet.certik.com","type":"other","archive_url":"http://web.archive.org/web/20260413175947/https://skynet.certik.com/projects/transit-swap","credibility":3,"archive_timestamp":"2026-04-13T17:59:47+00:00"},{"url":"https://www.bankinfosecurity.com/hacker-steals-29m-from-transit-finance-returns-19m-a-20196","name":"bankinfosecurity.com","type":"other","archive_url":"https://web.archive.org/web/20260830170139/https://www.bankinfosecurity.com/hacker-steals-29m-from-transit-finance-returns-19m-a-20196","credibility":3,"archive_timestamp":"2026-08-30T17:01:39+00:00"},{"url":"https://www.coindesk.com/business/2022/10/03/transit-swap-exploiter-returns-large-chunk-of-289m-hack","name":"coindesk.com","type":"other","archive_url":"http://web.archive.org/web/20260915171641/https://www.coindesk.com/business/2022/10/03/transit-swap-exploiter-returns-large-chunk-of-289m-hack","credibility":3,"archive_timestamp":"2026-09-15T17:16:41+00:00"},{"url":"https://www.coindesk.com/business/2022/10/10/transit-finance-hacker-returns-274m-to-victims-sends-686k-to-tornado-cash","name":"coindesk.com","type":"other","archive_url":"https://web.archive.org/web/20260915235606/https://www.coindesk.com/business/2022/10/10/transit-finance-hacker-returns-274m-to-victims-sends-686k-to-tornado-cash","credibility":3,"archive_timestamp":"2026-09-15T23:56:06+00:00"},{"url":"https://quillaudits.medium.com/transit-finance-28-9m-exploit-analysis-quillaudits-5d8228956102","name":"quillaudits.medium.com","type":"other","archive_url":null,"credibility":3,"archive_error":"error:no-request","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://slowmist.medium.com/cross-chain-dex-aggregator-transit-swap-hacked-analysis-74ba39c22020","name":"slowmist.medium.com","type":"other","archive_url":"http://web.archive.org/web/20260819234322/https://slowmist.medium.com/cross-chain-dex-aggregator-transit-swap-hacked-analysis-74ba39c22020","credibility":3,"archive_timestamp":"2026-08-19T23:43:22+00:00"},{"url":"https://www.halborn.com/blog/post/explained-the-transit-swap-hack-october-2022","name":"halborn.com","type":"other","archive_url":"http://web.archive.org/web/20260415072820/https://www.halborn.com/blog/post/explained-the-transit-swap-hack-october-2022","credibility":3,"archive_timestamp":"2026-04-15T07:28:20+00:00"},{"url":"https://medium.com/neptune-mutual/decoding-transit-finances-contract-vulnerability-977d2fda2897","name":"medium.com","type":"other","archive_url":null,"credibility":3,"archive_error":"error:no-request","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://beincrypto.com/hacker-exploits-21m-vulnerability-in-transit-swap/","name":"beincrypto.com","type":"other","archive_url":null,"credibility":3,"archive_error":"error:no-request","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://home.treasury.gov/news/press-releases/jy0916","name":"home.treasury.gov","type":"other","archive_url":"http://web.archive.org/web/20260822123118/https://home.treasury.gov/news/press-releases/jy0916","credibility":3,"archive_timestamp":"2026-08-22T12:31:18+00:00"},{"url":"https://docs.transit.finance/announcement/announcement/relaunch","name":"docs.transit.finance","type":"other","archive_url":"http://web.archive.org/web/20260307172444/https://docs.transit.finance/announcement/announcement/relaunch","credibility":3,"archive_timestamp":"2026-03-07T17:24:44+00:00"},{"url":"https://medium.com/@TransitSwap/transit-swap-is-officially-re-launch-abe58f242d28","name":"medium.com","type":"other","archive_url":null,"credibility":3,"archive_error":"error:no-request","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://www.slowmist.com/en/security-audit-certificate.html?id=928799684ad96ef4ed4b0c0fb12a5fae085456f874b19dc4300195b32a5a1431","name":"slowmist.com","type":"other","archive_url":"http://web.archive.org/web/20260528020231/https://www.slowmist.com/en/security-audit-certificate.html?id=928799684ad96ef4ed4b0c0fb12a5fae085456f874b19dc4300195b32a5a1431","credibility":3,"archive_timestamp":"2026-05-28T02:02:31+00:00"},{"url":"https://crypto.news/transit-finance-hack-drains-1-88m-from-cross-chain-protocol/","name":"crypto.news","type":"other","archive_url":"http://web.archive.org/web/20260802235946/https://crypto.news/transit-finance-hack-drains-1-88m-from-cross-chain-protocol/","credibility":3,"archive_timestamp":"2026-08-02T23:59:46+00:00"},{"url":"https://www.web3isgoinggreat.com/single/transit-finance-hack","name":"web3isgoinggreat.com","type":"other","archive_url":"http://web.archive.org/web/20260517144801/https://www.web3isgoinggreat.com/single/transit-finance-hack","credibility":3,"archive_timestamp":"2026-05-17T14:48:01+00:00"},{"url":"https://www.ainvest.com/news/transit-finance-hack-1-88m-stablecoin-drain-flow-implications-2605/","name":"ainvest.com","type":"other","archive_url":null,"credibility":3,"archive_error":"error:not-found","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://nulltx.com/1-88m-reportedly-drained-in-transitfinance-exploit-that-exposes-hidden-risks-of-legacy-smart-contracts/","name":"nulltx.com","type":"other","archive_url":"http://web.archive.org/web/20260605221947/https://nulltx.com/1-88m-reportedly-drained-in-transitfinance-exploit-that-exposes-hidden-risks-of-legacy-smart-contracts/","credibility":3,"archive_timestamp":"2026-06-05T22:19:47+00:00"},{"url":"https://www.cryptotimes.io/2026/05/13/1-88m-drained-from-transit-finance-stolen-dai-sits-in-fresh-eth-wallet/","name":"cryptotimes.io","type":"other","archive_url":"https://web.archive.org/web/20260830205419/https://www.cryptotimes.io/2026/05/13/1-88m-drained-from-transit-finance-stolen-dai-sits-in-fresh-eth-wallet/","credibility":3,"archive_timestamp":"2026-08-30T20:54:19+00:00"},{"url":"https://cryip.co/transit-finance-hacked-again-cross-chain-defi-protocol-loses-1-88-million-in-latest-exploit/","name":"cryip.co","type":"other","archive_url":"http://web.archive.org/web/20260727131325/https://cryip.co/transit-finance-hacked-again-cross-chain-defi-protocol-loses-1-88-million-in-latest-exploit/","credibility":3,"archive_timestamp":"2026-07-27T13:13:25+00:00"},{"url":"https://phemex.com/news/article/transit-finance-to-compensate-users-after-tron-smart-contract-exploit-80916","name":"phemex.com","type":"other","archive_url":"https://web.archive.org/web/20260830165838/https://phemex.com/news/article/transit-finance-to-compensate-users-after-tron-smart-contract-exploit-80916","credibility":3,"archive_timestamp":"2026-08-30T16:58:38+00:00"},{"url":"https://www.cryptopolitan.com/transit-finance-to-refund-hack-may-losses/","name":"cryptopolitan.com","type":"other","archive_url":"https://web.archive.org/web/20260830170423/https://www.cryptopolitan.com/transit-finance-to-refund-hack-may-losses/","credibility":3,"archive_timestamp":"2026-08-30T17:04:23+00:00"},{"url":"https://blog.solidityscan.com/transit-swap-hack-analysis-13c1e04e7de0/","name":"blog.solidityscan.com","type":"other","archive_url":"http://web.archive.org/web/20260830040511/https://blog.solidityscan.com/transit-swap-hack-analysis-13c1e04e7de0/","credibility":3,"archive_timestamp":"2026-08-30T04:05:11+00:00"}],"source_tags":[],"addresses":[],"reviewed":false,"reviewed_by":null,"model_used":"claude-sonnet-4-6","created_at":"2026-05-28T03:37:52.029657+00:00","updated_at":"2026-10-10T18:48:54.405+00:00"},"source_quality":{"total":24,"tier1":1,"tier2":5,"tier3":0,"unrated":18},"follower_count":null,"content_updated_at":"2026-10-10T18:48:54.633Z","last_fact_checked_at":"2026-05-30T19:10:18.711Z","fact_check_next_allowed_at":null,"update_next_allowed_at":null}