Moderate risk — strong position on Sui, but single-chain concentration and immature security tooling on a young blockchain are real constraints
Risk Breakdown
Top Risks
Single-ecosystem concentration: as Sui's top lending protocol, Scallop is fully exposed to Sui chain risk, bridge failures, and ecosystem-wide contagion
Multi-oracle dependency (Pyth, Switchboard, Supra) on a younger chain has a documented exploitation vector: in April 2026 an attacker used oracle manipulation to depress SUI/USDC prices and drain a deprecated V2 rewards contract via flash loan (42K loss, fully covered by the team)
Sui's Move-based smart contracts have a shorter audit history than Solidity, with fewer security tools and researchers available
Frequently Asked Questions
Is Scallop safe to use?
What are the main risks of using Scallop?
What is Scallop's risk score breakdown?
How does Scallop compare to other Lending protocols?
Has Scallop ever been hacked or exploited?
Incident History
Get risk alerts before it's too late
Weekly grade changes, downgrade alerts, and new protocol risk findings. Free.