Skip to content
Menu
Patent pending

A Consequence Record · The Consequence Library

Moonwell: oracle configuration error following review and governance approval

An incorrect oracle configuration passed through review and governance processes before deployment. AI involvement in authoring the code has been reported but is not independently established.

The Consequence Library · How records are made and graded

An oracle configuration deployed by governance proposal MIP-X43 valued Coinbase Wrapped ETH at approximately $1.12 instead of roughly $2,200, triggering liquidations that left the Moonwell protocol with approximately $1.78 million in bad debt.

Date
15 February 2026
Sector
crypto-defi
System type
coding-cyber-agent
Failure stage
release
Consequence
financial-loss
Severity
S2, major
Confidence
Event: C1, adjudicated or regulator-grade
AI attribution: C2, multi-source corroborated
Last verified
16 August 2026

Evidence caveat. The AI co-authorship attribution comes from a named security auditor reading public commit records, and is reported rather than confirmed by the project. The mispricing, the liquidations and the loss are on-chain facts.

What happened

On 15 February 2026 MIP-X43 executed, enabling oracle wrapper contracts across core markets. One configuration contained a critical error: instead of deriving the USD price by multiplying the cbETH/ETH feed by the ETH/USD price, the oracle used only the raw cbETH/ETH exchange rate, a roughly two-thousandfold mispricing. Liquidation bots acted within minutes, and the protocol incurred approximately $1.78 million in bad debt. A blockchain security auditor reported that portions of the oracle code were co-authored by an AI model, per commit records in the project's repository. A subsequent governance proposal was submitted to revert the pricing model and consider user remediation.

Where control failed

The configuration passed through the project's review and governance process before deployment. Once deployed, automated market activity reacted to the incorrect price more quickly than the governance process could reverse the change.

The authority question

The proposal received formal approval. The incident therefore distinguishes approval of a change from independent verification of the change's technical effect before execution.

What could be proven afterward

Excellent, and unusually so. The mispricing, the liquidations and the losses are all on-chain and independently reconstructable by anyone, and the commit history is public. This is the rare record where the evidence layer worked: the failure was in control before the action, not in proving it afterward.

Control state, before and after

Before the consequence

Human review and on-chain governance vote as the controls on oracle configuration. Post-execution reversal gated behind a multi-day timelock.

After the consequence

Governance proposal submitted to revert the pricing model and consider user remediation.

Sources

Record history

Published 16 August 2026. Load-bearing facts re-verified against the cited sources on 16 August 2026. Corrections and material changes are appended here with their dates. To report an error in this record, write to hello@regulayer.com with the record slug and the source you believe is authoritative.

This record describes what sources establish about a consequence and the control state around it. It separates confirmed fact from source-stated cause and from architectural analysis, and it makes no claim that any control or product would have prevented the outcome. Gap codes identify a failure class, not a remedy.