← zkFinance1 decision on this page
Audit log
Every state-changing event for zkFinance: moderation decisions on community submissions, plus corrections and updates from the news pipeline. URL-based decisions carry three independent witnesses — the original source, an Internet Archive snapshot taken at submission time, and a Solana memo signed by our publicly-disclosed publisher key.
- #1publishby system:backfill2026-05-29 16:47:25ZScore: ? → ? (no score change)anchoranchored
- chain
- ●mainnet-betaslot 422,977,574
- sig
5Z9vGpLZF2xr…kD4T8gZsexplorer ↗- hash
B6vDKZwCBnRT…rkYqcvQRsha256 → base58
verifying row…full verify ↗canonical bytes (5363 B) ▸
{"actor":"system:backfill","investigation_id":"295247f5-e876-4fb5-8728-9c0dc0c9d49d","kind":"publish","page_slug":"zkfinance","published_at":"2026-05-29T16:47:25.623Z","sequence_num":1,"snapshot":{"content_type":"investigation","entity_name":"zkFinance","sections":[{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"https://defillama.com/protocol/zkfinance","type":"other","url":""},{"credibility":3,"name":"https://www.zkfinance.org/","type":"other","url":""},{"credibility":3,"name":"https://faq.zkfinance.org/faqs/general/what-is-zkfinance","type":"other","url":""},{"credibility":3,"name":"https://www.scamadviser.com/check-website/zkfinance.org","type":"other","url":""}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"https://defillama.com/protocol/zkfinance","type":"other","url":""},{"credibility":3,"name":"https://www.halborn.com/blog/post/what-are-price-oracle-manipulation-attacks-in-defi","type":"other","url":""},{"credibility":3,"name":"https://owasp.org/www-project-smart-contract-top-10/2025/en/src/SC02-price-oracle-manipulation.html","type":"other","url":""}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"https://www.zkfinance.org/","type":"other","url":""},{"credibility":3,"name":"https://www.rootdata.com/Projects/detail/zkFinance?k=NDQ5NA%3D%3D","type":"other","url":""},{"credibility":3,"name":"https://www.scamadviser.com/check-website/zkfinance.org","type":"other","url":""},{"credibility":3,"name":"https://alphagrowth.io/zkfinance-are","type":"other","url":""}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"https://etherscan.io/token/0x7790af1e31ad3c38914e136143e4fd5088930392","type":"other","url":""},{"credibility":3,"name":"https://dappradar.com/rewards/airdrop/zkfinance-zgt-token-airdrop","type":"other","url":""},{"credibility":3,"name":"https://medium.com/@martin223565/how-to-join-zkfinance-airdrop-for-zgt-tokens-1999c185aa4e","type":"other","url":""},{"credibility":3,"name":"https://alphagrowth.io/zkfinance-are","type":"other","url":""}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"https://github.com/peckshield/publications/blob/master/audit_reports/PeckShield-Audit-Report-ZKFI-v1.0.pdf","type":"other","url":""},{"credibility":3,"name":"https://faq.zkfinance.org/faqs/general/what-is-zkfinance","type":"other","url":""},{"credibility":3,"name":"https://www.zellic.io/blog/what-is-a-zk-audit/","type":"other","url":""}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"https://defillama.com/protocol/zkfinance","type":"other","url":""},{"credibility":3,"name":"https://alphagrowth.io/zkfinance-are","type":"other","url":""},{"credibility":3,"name":"https://www.coinspeaker.com/zksync-zk-sharp-decline-tvl/","type":"other","url":""},{"credibility":3,"name":"https://www.thorwallet.org/","type":"other","url":""}]}],"sources_used":[],"summary":"zkFinance is a DeFi lending and borrowing protocol deployed on zkSync Era that also offers bridging, cross-chain swaps, and a concentrated-liquidity DEX. The protocol suffered a documented $200,000 protocol logic exploit attributed to an oracle misconfiguration in November 2024 and has since registered near-zero TVL ($24,990) with no active loans outstanding. The team is pseudonymous, no public founder identities have been verified, and the protocol's native ZGT token has attracted minimal exchange listing activity and negligible on-chain trading volume.","timeline":[{"date":"2022-01-01","event":"zkFinance project founded, according to aggregator records. Exact founding date unverified.","source":""},{"date":"2023-05-04","event":"zkFinance posts early promotional content on X/Twitter (@zkFinance_ZGT), describing the protocol as lending and borrowing on zkSync with ZGT token and airdrop plans.","source":""},{"date":"2023-06-01","event":"zkFinance mainnet deployment on zkSync Era. PeckShield smart contract audit claimed as completed prior to or concurrent with launch.","source":""},{"date":"2024-06-27","event":"zkFinance posts on X about ZGT token distribution. Airdrop of 20 million ZGT tokens over 100 days announced, requiring $200 minimum supply or borrow activity.","source":""},{"date":"2024-10-01","event":"Multiple third-party Medium articles publish airdrop participation guides for zkFinance ZGT. Token described as pending TGE (Token Generation Event).","source":""},{"date":"2024-11-11","event":"zkFinance suffers a $200,000 protocol logic exploit on zkSync Era. Root cause attributed to oracle misconfiguration. No public post-mortem issued by the team. Recorded by DefiLlama hacks tracker.","source":""},{"date":"2025-01-01","event":"zkFinance TVL declines to minimal levels following the November 2024 exploit. Active loans recorded at $0 on DefiLlama.","source":""},{"date":"2025-01-01","event":"ZachXBT flags zkFinance. Exact nature and date of the flag are not independently verifiable from publicly archived ZachXBT posts reviewed during this investigation.","source":""},{"date":"2026-05-01","event":"zkFinance TVL recorded at approximately $24,990 with $0 active loans. Twitter/X following at approximately 12,000–13,600 with declining trend. ZGT token has no confirmed major exchange listings.","source":""}]},"v":1}Verify offline (run on your own machine)python -m src.verify_decision 5a8b7f9a-48ef-4299-a6fb-6a3dbd99f253
How verification works. The “Row integrity” check above is computed in your browser — your machine recomputes the SHA-256 of the canonical bytes and compares against the stored hash. No avoid.net server can fake that check. The “full verify” link goes one level deeper: your browser fetches the on-chain transaction from a Solana RPC node and confirms the same hash is in the memo. If you don’t want to trust either avoid.net or the public RPC, run the CLI verifier on your own machine —
python -m src.verify_decision <event_id>.