industry · quantum risk
Morpho admin keys & Quantum Risk
Verdict
Morpho admin and curator roles are not quantum-proof. Curators and protocol controllers use classical keys that can change risk for depositors.
Overview
Morpho’s market and vault model introduces curator and admin surfaces beyond simple pool lending.
Depositors should inventory which roles can change market parameters and which EOAs sit behind them.
Cryptographic profile
- Signatures: Host-chain account signatures for role holders (typically classical ECDSA/Ed25519), Multisig/module keys as deployed
- Hash: Host-chain dependent
- Public-key exposure: Vault curators, market creators, protocol admins as deployed
- Hosts/context: Ethereum Morpho markets and vaults
What breaks
- Compromise of admin keys related keys for Morpho
- Equating role separation or multisig with post-quantum algorithms
- Untracked multi-chain deployments of the same protocol
Mitigations
- Document privileged addresses from official docs per chain
- Hardware/MPC for guardians, admins, and large governors
- Return to /is-quantum-proof/morpho for protocol context
- Use category hubs: lending, dex, perps, stablecoins
FAQ
Is a curated vault quantum-safe?
Curation is operational trust; signatures remain classical on Ethereum-class hosts.
Protocol page?
/is-quantum-proof/morpho
Key concepts (technical dictionary)
Terms used on this page — open a definition: