{
  "registry": {
    "schema": "kerne-account-registry/v1",
    "operator": "0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e",
    "registry_version": 5,
    "as_of": "2026-07-28",
    "membership_message_template": "I belong to Kerne as of %s.",
    "membership_message": "I belong to Kerne as of 2026-07-28.",
    "specified_by": "Euler governance thread 1849, post 7, 2026-07-25, by Oleg_Aleksandrov. The message text, the venue constraint and the no-paid-attestor requirement are his, not ours.",
    "completeness_claim": "This is every account Kerne controls as of the stated date, except for the two externally owned addresses named at the end of this paragraph, which are disclosed here rather than listed as entries. Completeness cannot be proven by any signature scheme, and this registry does not claim otherwise. What makes it auditable is the chain rather than the list: protocol funds cannot reach an undisclosed account without first leaving one of the accounts on this list, and every one of those accounts has a public transaction history. The two exceptions are reachable only from the retired vault v1 0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac, which returns 0x57D400CEd462A01Ed51a5DE038f204Df49690A99 from exchangeDepositAddress() and 0xEc29739ff0217bA09016efDE91523544b9B8AcE8 from founder(). Neither has ever received anything from any Kerne contract, and both are named here so that a reader tracing that vault's outbound paths finds them in this document rather than only on chain. They are disclosed instead of enumerated because an entry for an externally owned address requires a membership signature from the key itself, and neither signature has been produced. Enumerating them without one would put an unsigned account on a signed list; naming them is the honest alternative, and each becomes a full entry if its key is ever used.",
    "violation_predicate": "A transfer from any account on this list to an address that is neither on this list nor a user redemption is a violation of this published rule, and it is visible to anyone watching the chain. Movement between listed accounts is normal. Sending USDC to a user through redemption is normal. Sending funds to a venue account that is not on this list is not. One case is neither of those and it is handled by disclosure rather than by an exception. A venue contract that Kerne deposits into but does not control cannot be an entry, because an entry asserts control and carries a proof of it, and Kerne has neither a key for such a contract nor the power to make it satisfy a predicate. Every one of them is named under disclosed_venue_deposits, with the read anyone can run to see Kerne's balance there. The disclosure has to appear in a registry version whose issued_at precedes the transfer, so a deposit into a venue this document did not already name is still a violation and the timestamps are the check. Naming it afterwards does not cure it.",
    "hedge_venue_policy": {
      "rule": "Kerne may hold margin only on venues that publish per-address state, so that any third party can read Kerne's balance at that venue without Kerne's cooperation. A venue with no public per-address read is inadmissible, and an entry naming one makes this registry invalid rather than merely flagged.",
      "admissible_venues": {
        "hyperliquid": {
          "public_per_address_read": "POST https://api.hyperliquid.xyz/info with {\"type\":\"clearinghouseState\",\"user\":\"<address>\"}",
          "requires_authentication": false,
          "returns": "account value, margin summary and every open position for the address, with no API key and no relationship to the venue"
        }
      },
      "inadmissible_examples": [
        "any centralized exchange that publishes only aggregate proof of reserves, because a third party cannot isolate Kerne's balance",
        "any venue where per-address state requires an authenticated session, because the read is then a favour to us rather than a public fact"
      ]
    },
    "disclosed_venue_deposits": {
      "rule": "A venue contract that Kerne deposits into but does not control cannot be an entry on this list, because an entry asserts control and carries a proof of it, and Kerne has neither a key for such a contract nor the power to make it satisfy a predicate. Every one of them is named here instead, before any funds are sent, together with the read a stranger can run to see Kerne's balance there without Kerne's cooperation. The bar is the one hedge_venue_policy sets and it is not relaxed for this list: a venue with no public per-address read does not get disclosed and does not get deposited into. Disclosure here is not permission and it is not endorsement. It records that Kerne put its own money somewhere a reader can check, and it is the reason a balance found at one of these addresses is Kerne's own capital rather than evidence that anybody else wanted the venue.",
      "accounts": [
        {
          "address": "0xD3800ceb6bBeB90101ed5d5A46017fE846c9509e",
          "symbol": "ekUSD-1",
          "venue": "euler_v2_edge_base",
          "chain": "base",
          "asset": "kUSD",
          "kerne_controls": false,
          "holds_protocol_funds": false,
          "backs_kusd": false,
          "what_it_is": "Escrow collateral vault for kUSD in the isolated kUSD/USDC market Kerne deployed on Euler v2 Edge on 2026-08-09. Escrow means non-borrowable by construction: kUSD deposited here is collateral only and cannot be lent to anyone.",
          "receives_from": "0x14f04cE02f35B29Af564A98544dD7e2393993946",
          "why_not_an_entry": "Governance on this vault was set to the zero address inside the transaction that created it, so nobody including Kerne can change a parameter on it, and Kerne holds no key for it. It is not a Kerne account and listing it as one would be a false claim of control.",
          "public_per_address_read": "cast call 0xD3800ceb6bBeB90101ed5d5A46017fE846c9509e \"balanceOf(address)(uint256)\" <address> --rpc-url https://mainnet.base.org, then put the result through \"convertToAssets(uint256)\" on the same contract for the kUSD figure",
          "requires_authentication": false,
          "returns": "the exact share balance and kUSD value of any address in this vault, with no API key and no relationship to Euler or to Kerne",
          "disclosed_at": "2026-08-14"
        },
        {
          "address": "0xe87c294E1139C31770727193e3Be0ccEd73d6AA3",
          "symbol": "eUSDC-116",
          "venue": "euler_v2_edge_base",
          "chain": "base",
          "asset": "USDC",
          "kerne_controls": false,
          "holds_protocol_funds": false,
          "backs_kusd": false,
          "what_it_is": "Borrowable USDC vault of the same market. USDC supplied here is what a borrower draws against kUSD collateral, and it is the leg an outside lender would supply to.",
          "receives_from": "0x14f04cE02f35B29Af564A98544dD7e2393993946",
          "why_not_an_entry": "Same as the collateral vault. Governance is the zero address, set atomically by the factory that deployed it, and Kerne holds no key for it.",
          "public_per_address_read": "cast call 0xe87c294E1139C31770727193e3Be0ccEd73d6AA3 \"balanceOf(address)(uint256)\" <address> --rpc-url https://mainnet.base.org for the supplied side, \"convertToAssets(uint256)\" for its USDC value, and \"debtOf(address)(uint256)\" on the same contract for what that address has borrowed",
          "requires_authentication": false,
          "returns": "the exact supplied balance and the exact debt of any address in this vault, with no API key and no relationship to Euler or to Kerne",
          "disclosed_at": "2026-08-14"
        }
      ],
      "funds_sent_are": "Kerne's own capital, sent from the disclosed founder wallet 0x14f04cE02f35B29Af564A98544dD7e2393993946, which is entry 1 on this list. No PSM reserve is sent to these addresses and nothing that backs kUSD is sent to them. The reserves backing kUSD are enumerated as entries above and none of those accounts is a sender here, which is checkable on chain rather than promised.",
      "what_a_balance_here_means": "That Kerne supplied its own money to a venue it built, so the mechanism could be shown working rather than described. It is not demand, it is not adoption, and it is not a third party. Whether any of the capital in that market belongs to somebody other than Kerne is answered by subtraction at https://kerne.fi/api/euler, which reads Kerne's own position off chain and publishes the remainder."
    },
    "account_set_digest": "0x7cab3570d7a8d142e44560a350765bf29e86a0b1ce6eb4c2747c8ec8975592e7",
    "entries": [
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e",
          "kind": "eoa",
          "chain": "base+hyperliquid",
          "role": "venue_margin",
          "venue": "hyperliquid",
          "label": "Hyperliquid margin account, and the protocol's on-chain sender. No longer the PoR attestation signer as of 2026-08-13",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": "POST https://api.hyperliquid.xyz/info with {\"type\":\"clearinghouseState\",\"user\":\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\"}",
          "note": "This is the only venue account Kerne holds. It signs this registry and it signs the signer-registry entry that authorizes the attestation key, so it remains the trust root of both. It stopped signing the hourly attestation itself on 2026-08-13 under KRN-26-POR-SIGNER-VENUE-KEY, which Kerne disclosed in thread 1849 post 6 before fixing it. Attestations dated before that cutover recover to this address; later ones recover to the attestation signer named in the binding this account signed at https://kerne.fi/api/por/signer-registry.",
          "membership_proof": {
            "kind": "eoa_signature",
            "as_of": "2026-07-28",
            "message": "I belong to Kerne as of 2026-07-28.",
            "verify": "cast wallet verify --address 0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e \"I belong to Kerne as of 2026-07-28.\" <membership_signature>"
          },
          "observation": null,
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\",\"backs_kusd\":false,\"chain\":\"base+hyperliquid\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"eoa\",\"label\":\"Hyperliquid margin account, and the protocol's on-chain sender. No longer the PoR attestation signer as of 2026-08-13\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"eoa_signature\",\"message\":\"I belong to Kerne as of 2026-07-28.\",\"verify\":\"cast wallet verify --address 0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e \\\"I belong to Kerne as of 2026-07-28.\\\" <membership_signature>\"},\"note\":\"This is the only venue account Kerne holds. It signs this registry and it signs the signer-registry entry that authorizes the attestation key, so it remains the trust root of both. It stopped signing the hourly attestation itself on 2026-08-13 under KRN-26-POR-SIGNER-VENUE-KEY, which Kerne disclosed in thread 1849 post 6 before fixing it. Attestations dated before that cutover recover to this address; later ones recover to the attestation signer named in the binding this account signed at https://kerne.fi/api/por/signer-registry.\",\"observation\":null,\"public_state_read\":\"POST https://api.hyperliquid.xyz/info with {\\\"type\\\":\\\"clearinghouseState\\\",\\\"user\\\":\\\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\\\"}\",\"role\":\"venue_margin\",\"schema\":\"kerne-account-entry/v1\",\"venue\":\"hyperliquid\"}",
        "statement_digest": "0x0eba3c77c7a9c3ee30352c74625944b0df662ed5c90712020f04e6498c77f610",
        "membership_signature": "0x4e91dbe039c3c524b75e0663804146aa054f0ca71ea7f803ba4092884387dfc930e8734922ba3255233eebbb0ae39b3f5b98acf3cc1e3f68d699e9253fd17c921c"
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x14f04cE02F35b29Af564a98544dD7E2393993946",
          "kind": "eoa",
          "chain": "base",
          "role": "hedge_base_watch_only",
          "venue": null,
          "label": "Founder-custodied watch-only float the hedge engine sizes its short against",
          "holds_protocol_funds": false,
          "backs_kusd": false,
          "public_state_read": "cast balance 0x14f04cE02F35b29Af564a98544dD7E2393993946 --rpc-url https://mainnet.base.org",
          "note": "Backs no kUSD and enters no solvency ratio. It is on this list because it is inside the hedge base, and an account that moves the published delta measurement has to be enumerated even though it is not collateral. It is also an owner of the Kerne Safe.",
          "membership_proof": {
            "kind": "eoa_signature",
            "as_of": "2026-07-28",
            "message": "I belong to Kerne as of 2026-07-28.",
            "verify": "cast wallet verify --address 0x14f04cE02F35b29Af564a98544dD7E2393993946 \"I belong to Kerne as of 2026-07-28.\" <membership_signature>"
          },
          "observation": null,
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x14f04cE02F35b29Af564a98544dD7E2393993946\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":false,\"issued_at\":1786727734,\"kind\":\"eoa\",\"label\":\"Founder-custodied watch-only float the hedge engine sizes its short against\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"eoa_signature\",\"message\":\"I belong to Kerne as of 2026-07-28.\",\"verify\":\"cast wallet verify --address 0x14f04cE02F35b29Af564a98544dD7E2393993946 \\\"I belong to Kerne as of 2026-07-28.\\\" <membership_signature>\"},\"note\":\"Backs no kUSD and enters no solvency ratio. It is on this list because it is inside the hedge base, and an account that moves the published delta measurement has to be enumerated even though it is not collateral. It is also an owner of the Kerne Safe.\",\"observation\":null,\"public_state_read\":\"cast balance 0x14f04cE02F35b29Af564a98544dD7E2393993946 --rpc-url https://mainnet.base.org\",\"role\":\"hedge_base_watch_only\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0xa7ea88049ee9c8308055016f517f62cb42c614bce50db1c9415e04388e2b274d",
        "membership_signature": "0xacf271420742c7968b289e83645ee0df8fa5fadd11b3d0b2a3325e718885139d0684c45536b17591894ba4bab245921019fb9e851a52d4e7a341de39250376fc1c"
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x52d3E450Ba6c299b1b07298F1E87dD74732D4877",
          "kind": "contract",
          "chain": "base",
          "role": "admin_multisig",
          "venue": null,
          "label": "Kerne Safe, 2-of-3, DEFAULT_ADMIN_ROLE on every protocol contract below",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": "cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \"getOwners()(address[])\" --rpc-url https://mainnet.base.org",
          "note": "Threshold 2 of 3. The owner set is a public read and needs no disclosure from Kerne to be checked. One owner is 0x14f04cE02F35b29Af564a98544dD7E2393993946, which is enumerated above and signs the membership message. The other two are individual co-signer keys. They hold no protocol funds and receive none, so they are authorization keys rather than accounts in the sense this registry enumerates, and Kerne does not publish the identity behind either. The rule Kerne accepts is the sharp version: if protocol funds are ever sent to a co-signer key, that key becomes an enumerable account and must appear here with a membership signature of its own.",
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x52d3E450Ba6c299b1b07298F1E87dD74732D4877",
              "data": "0xa0e67e2b",
              "expect_contains_address": "0x14f04cE02F35b29Af564a98544dD7E2393993946",
              "means": "The Safe's owner set contains the disclosed EOA 0x14f04cE02F35b29Af564a98544dD7E2393993946, which signs the membership message on this list. That is the hop that closes the chain from every protocol contract to a signing key.",
              "cast": "cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \"getOwners()(address[])\" --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969193,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000020000000000000000000000000000000000000000000000000000000000000000300000000000000000000000014f04ce02f35b29af564a98544dd7e23939939460000000000000000000000000cec7021f4c20f3d5ebb55c1ac591c15efbb7895000000000000000000000000f4a43c88b7370bd6e370c7af5fe663c6d223b3fb",
            "holds": true,
            "rpc_used": "https://mainnet.base.org"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Kerne Safe, 2-of-3, DEFAULT_ADMIN_ROLE on every protocol contract below\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \\\"getOwners()(address[])\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0xa0e67e2b\",\"expect_contains_address\":\"0x14f04cE02F35b29Af564a98544dD7E2393993946\",\"kind\":\"eth_call\",\"means\":\"The Safe's owner set contains the disclosed EOA 0x14f04cE02F35b29Af564a98544dD7E2393993946, which signs the membership message on this list. That is the hop that closes the chain from every protocol contract to a signing key.\",\"to\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Threshold 2 of 3. The owner set is a public read and needs no disclosure from Kerne to be checked. One owner is 0x14f04cE02F35b29Af564a98544dD7E2393993946, which is enumerated above and signs the membership message. The other two are individual co-signer keys. They hold no protocol funds and receive none, so they are authorization keys rather than accounts in the sense this registry enumerates, and Kerne does not publish the identity behind either. The rule Kerne accepts is the sharp version: if protocol funds are ever sent to a co-signer key, that key becomes an enumerable account and must appear here with a membership signature of its own.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969193,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000020000000000000000000000000000000000000000000000000000000000000000300000000000000000000000014f04ce02f35b29af564a98544dd7e23939939460000000000000000000000000cec7021f4c20f3d5ebb55c1ac591c15efbb7895000000000000000000000000f4a43c88b7370bd6e370c7af5fe663c6d223b3fb\",\"rpc_used\":\"https://mainnet.base.org\"},\"public_state_read\":\"cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \\\"getOwners()(address[])\\\" --rpc-url https://mainnet.base.org\",\"role\":\"admin_multisig\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x7b07437796ac14a8b42e7d35f748c0b1e82d2ac9f607e3c30246d29d66f5be94",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x5343C41d4FF2B61DAacA9cbC050550C40605B075",
          "kind": "contract",
          "chain": "base",
          "role": "treasury",
          "venue": null,
          "label": "Protocol treasury, the fee destination of the live mint PSM",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": "Deployed 2026-06-16 and made the fee destination when the Safe executed setTreasury on the mint PSM 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 on 2026-07-13. The secondary predicate below reads that pointer off the PSM rather than asserting it, so which treasury is live is a public read and not something a reader has to take from Kerne. Between 2026-07-13 and 2026-07-29 this registry named the superseded treasury below instead, which was wrong and was correctable against exactly the call published here.",
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x5343C41d4FF2B61DAacA9cbC050550C40605B075",
              "data": "0x8da5cb5b",
              "expect_address": "0x52d3E450Ba6c299b1b07298F1E87dD74732D4877",
              "means": "The protocol treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.",
              "cast": "cast call 0x5343C41d4FF2B61DAacA9cbC050550C40605B075 \"owner()(address)\" --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803",
              "data": "0x61d027b3",
              "expect_address": "0x5343C41d4FF2B61DAacA9cbC050550C40605B075",
              "means": "The live mint PSM's own treasury() resolves to this address, so this is where protocol fees actually go. Any registry naming a different treasury is falsifiable against this one call.",
              "cast": "cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \"treasury()(address)\" --rpc-url https://mainnet.base.org"
            },
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969193,
            "observed_value": "0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
            "holds": true,
            "rpc_used": "https://mainnet.base.org",
            "secondary": {
              "observed_at_block": 49969193,
              "observed_value": "0x0000000000000000000000005343c41d4ff2b61daaca9cbc050550c40605b075",
              "holds": true,
              "rpc_used": "https://mainnet.base.org"
            }
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Protocol treasury, the fee destination of the live mint PSM\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x5343C41d4FF2B61DAacA9cbC050550C40605B075 \\\"owner()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x8da5cb5b\",\"expect_address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"kind\":\"eth_call\",\"means\":\"The protocol treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\",\"to\":\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\"},\"secondary_predicate\":{\"cast\":\"cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \\\"treasury()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x61d027b3\",\"expect_address\":\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\",\"kind\":\"eth_call\",\"means\":\"The live mint PSM's own treasury() resolves to this address, so this is where protocol fees actually go. Any registry naming a different treasury is falsifiable against this one call.\",\"to\":\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Deployed 2026-06-16 and made the fee destination when the Safe executed setTreasury on the mint PSM 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 on 2026-07-13. The secondary predicate below reads that pointer off the PSM rather than asserting it, so which treasury is live is a public read and not something a reader has to take from Kerne. Between 2026-07-13 and 2026-07-29 this registry named the superseded treasury below instead, which was wrong and was correctable against exactly the call published here.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969193,\"observed_value\":\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"rpc_used\":\"https://mainnet.base.org\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969193,\"observed_value\":\"0x0000000000000000000000005343c41d4ff2b61daaca9cbc050550c40605b075\",\"rpc_used\":\"https://mainnet.base.org\"}},\"public_state_read\":null,\"role\":\"treasury\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x24f9797d668a1b83eb592121b9dacf1cace2be80a90e59bb04e370c7d1b4a44e",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5",
          "kind": "contract",
          "chain": "base",
          "role": "treasury_v2_superseded",
          "venue": null,
          "label": "Prior treasury. Superseded as the mint PSM's fee destination on 2026-07-13, but still the fee destination of the attested vault v2 and of the retired mint PSM",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": "Described as superseded rather than retired, because it is not dormant and saying so would be the same species of error this entry exists to correct. Vault v2, the vault the hourly attestation covers, still returns this address from treasury(), as does the retired mint PSM. It is therefore a live destination of two accounts on this list. It also runs the pre-patch bytecode, whose executeBuyback carries no keeper gate, so value arriving here would be exposed to a call anyone can make. It holds zero. Repointing the two remaining references is an open Safe action, not a completed one, and Kerne routes nothing here in the meantime.",
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5",
              "data": "0x8da5cb5b",
              "expect_address": "0x52d3E450Ba6c299b1b07298F1E87dD74732D4877",
              "means": "The superseded treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.",
              "cast": "cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \"owner()(address)\" --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5",
              "data": "0x7df416ed",
              "expect_address": "0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340",
              "means": "Its kerneToken() still resolves to the retired KERNE v1 0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340, which is the on-chain proof that this is the older instance rather than the live one. Supersession is a read, not a claim.",
              "cast": "cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \"kerneToken()(address)\" --rpc-url https://mainnet.base.org"
            },
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
            "holds": true,
            "rpc_used": "https://mainnet.base.org",
            "secondary": {
              "observed_at_block": 49969194,
              "observed_value": "0x000000000000000000000000fea3d217f5f2304c8551dc9f5b5169f2c2d87340",
              "holds": true,
              "rpc_used": "https://mainnet.base.org"
            }
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Prior treasury. Superseded as the mint PSM's fee destination on 2026-07-13, but still the fee destination of the attested vault v2 and of the retired mint PSM\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \\\"owner()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x8da5cb5b\",\"expect_address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"kind\":\"eth_call\",\"means\":\"The superseded treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\",\"to\":\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\"},\"secondary_predicate\":{\"cast\":\"cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \\\"kerneToken()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x7df416ed\",\"expect_address\":\"0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340\",\"kind\":\"eth_call\",\"means\":\"Its kerneToken() still resolves to the retired KERNE v1 0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340, which is the on-chain proof that this is the older instance rather than the live one. Supersession is a read, not a claim.\",\"to\":\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Described as superseded rather than retired, because it is not dormant and saying so would be the same species of error this entry exists to correct. Vault v2, the vault the hourly attestation covers, still returns this address from treasury(), as does the retired mint PSM. It is therefore a live destination of two accounts on this list. It also runs the pre-patch bytecode, whose executeBuyback carries no keeper gate, so value arriving here would be exposed to a call anyone can make. It holds zero. Repointing the two remaining references is an open Safe action, not a completed one, and Kerne routes nothing here in the meantime.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"rpc_used\":\"https://mainnet.base.org\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x000000000000000000000000fea3d217f5f2304c8551dc9f5b5169f2c2d87340\",\"rpc_used\":\"https://mainnet.base.org\"}},\"public_state_read\":null,\"role\":\"treasury_v2_superseded\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0xcb049aedd59b1408c4a38bad8dd55171d7c03de1fbdb538b0f31a558370c2efd",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x0067F4957dea17CF76665F6A6585F6a904362106",
          "kind": "contract",
          "chain": "base",
          "role": "treasury_v1_superseded",
          "venue": null,
          "label": "Legacy treasury, superseded 2026-05-16. Still the fee destination of vault v1",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": "Superseded because its deployed bytecode was slimmed after deployment and no longer matched any committed source, so it could not be verified. It is enumerated for the same reason as the treasury above it: vault v1, which is on this list, still returns it from treasury(), so a reader tracing that vault's destination has to be able to find it here. It holds zero.",
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x0067F4957dea17CF76665F6A6585F6a904362106",
              "data": "0x8da5cb5b",
              "expect_address": "0x52d3E450Ba6c299b1b07298F1E87dD74732D4877",
              "means": "The legacy treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.",
              "cast": "cast call 0x0067F4957dea17CF76665F6A6585F6a904362106 \"owner()(address)\" --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
            "holds": true,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x0067F4957dea17CF76665F6A6585F6a904362106\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Legacy treasury, superseded 2026-05-16. Still the fee destination of vault v1\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x0067F4957dea17CF76665F6A6585F6a904362106 \\\"owner()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x8da5cb5b\",\"expect_address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"kind\":\"eth_call\",\"means\":\"The legacy treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\",\"to\":\"0x0067F4957dea17CF76665F6A6585F6a904362106\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Superseded because its deployed bytecode was slimmed after deployment and no longer matched any committed source, so it could not be verified. It is enumerated for the same reason as the treasury above it: vault v1, which is on this list, still returns it from treasury(), so a reader tracing that vault's destination has to be able to find it here. It holds zero.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"treasury_v1_superseded\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x1cc9acf412f25c94a9debe4bc9f3546fb6f97d65acadde6a0e1b2cfff8ff9d24",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0xE8799FCf327C6d2F78103a3C9308c93592a30403",
          "kind": "contract",
          "chain": "base",
          "role": "insurance_fund",
          "venue": null,
          "label": "Insurance fund",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0xE8799FCf327C6d2F78103a3C9308c93592a30403",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0xE8799FCf327C6d2F78103a3C9308c93592a30403 \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000001",
            "holds": true,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0xE8799FCf327C6d2F78103a3C9308c93592a30403\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Insurance fund\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0xE8799FCf327C6d2F78103a3C9308c93592a30403 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0xE8799FCf327C6d2F78103a3C9308c93592a30403\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"insurance_fund\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0xe1c38fc775414531da18ce66b149ae8205314187a63d9e1fa601101278436332",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9",
          "kind": "contract",
          "chain": "base",
          "role": "insurance_fund_v1_superseded",
          "venue": null,
          "label": "Legacy insurance fund, superseded 2026-05-16. Still the insurance destination of vault v1 and of the redeem PSM",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": "Superseded because its deployed bytecode diverged from any committed source. It stays enumerated because vault v1 and the redeem-side PSM, both on this list, still return it from insuranceFund(), so it is a live destination of two listed accounts even though Kerne routes nothing to it. It holds zero.",
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The legacy insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9 \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000001",
            "holds": true,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Legacy insurance fund, superseded 2026-05-16. Still the insurance destination of vault v1 and of the redeem PSM\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The legacy insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Superseded because its deployed bytecode diverged from any committed source. It stays enumerated because vault v1 and the redeem-side PSM, both on this list, still return it from insuranceFund(), so it is a live destination of two listed accounts even though Kerne routes nothing to it. It holds zero.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"insurance_fund_v1_superseded\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x611e2b8be46220820ae3200b02b254b472b4676398657157f497454f0347bc6d",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803",
          "kind": "contract",
          "chain": "base",
          "role": "psm_mint",
          "venue": null,
          "label": "Live mint PSM. Holds USDC that backs kUSD",
          "holds_protocol_funds": true,
          "backs_kusd": true,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The live mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3",
              "data": "0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6000000000000000000000000abde1138aa1ce88d1df06422c0c3b05d70569803",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "kUSD grants this PSM MINTER_ROLE, so it is the live mint path rather than a contract we merely claim.",
              "cast": "cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \"hasRole(bytes32,address)(bool)\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 --rpc-url https://mainnet.base.org"
            },
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000000",
            "holds": false,
            "rpc_used": "https://base-rpc.publicnode.com",
            "secondary": {
              "observed_at_block": 49969194,
              "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "holds": true,
              "rpc_used": "https://base-rpc.publicnode.com"
            }
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\",\"backs_kusd\":true,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Live mint PSM. Holds USDC that backs kUSD\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The live mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\"},\"secondary_predicate\":{\"cast\":\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\"hasRole(bytes32,address)(bool)\\\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6000000000000000000000000abde1138aa1ce88d1df06422c0c3b05d70569803\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"kUSD grants this PSM MINTER_ROLE, so it is the live mint path rather than a contract we merely claim.\",\"to\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"}},\"public_state_read\":null,\"role\":\"psm_mint\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x0f7507d76cab226706929b3e42518dd1cd103c35236cb338fe48059abc6c2692",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc",
          "kind": "contract",
          "chain": "base",
          "role": "psm_redeem_reserve",
          "venue": null,
          "label": "Redeem-side PSM reserve. Holds USDC that backs kUSD",
          "holds_protocol_funds": true,
          "backs_kusd": true,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The redeem PSM reserve is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000000",
            "holds": false,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc\",\"backs_kusd\":true,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Redeem-side PSM reserve. Holds USDC that backs kUSD\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The redeem PSM reserve is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"psm_redeem_reserve\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0xa1bb21ffba208a0a76e72dd95b27270b244bad0d48fdc4df0d653de893248540",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x07eBb486e11BD217e6085eb5ab663e4517595993",
          "kind": "contract",
          "chain": "base",
          "role": "psm_prev_mint_retired",
          "venue": null,
          "label": "Prior mint PSM, MINTER revoked 2026-07-10. Still holds USDC that backs kUSD minted through it",
          "holds_protocol_funds": true,
          "backs_kusd": true,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x07eBb486e11BD217e6085eb5ab663e4517595993",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The retired mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0x07eBb486e11BD217e6085eb5ab663e4517595993 \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3",
              "data": "0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a600000000000000000000000007ebb486e11bd217e6085eb5ab663e4517595993",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000000",
              "means": "kUSD no longer grants this PSM MINTER_ROLE. The revocation is a public read, not a claim.",
              "cast": "cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \"hasRole(bytes32,address)(bool)\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0x07eBb486e11BD217e6085eb5ab663e4517595993 --rpc-url https://mainnet.base.org"
            },
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969194,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000000",
            "holds": false,
            "rpc_used": "https://base-rpc.publicnode.com",
            "secondary": {
              "observed_at_block": 49969195,
              "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000000",
              "holds": true,
              "rpc_used": "https://base-rpc.publicnode.com"
            }
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x07eBb486e11BD217e6085eb5ab663e4517595993\",\"backs_kusd\":true,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Prior mint PSM, MINTER revoked 2026-07-10. Still holds USDC that backs kUSD minted through it\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x07eBb486e11BD217e6085eb5ab663e4517595993 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The retired mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x07eBb486e11BD217e6085eb5ab663e4517595993\"},\"secondary_predicate\":{\"cast\":\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\"hasRole(bytes32,address)(bool)\\\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0x07eBb486e11BD217e6085eb5ab663e4517595993 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a600000000000000000000000007ebb486e11bd217e6085eb5ab663e4517595993\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"kind\":\"eth_call\",\"means\":\"kUSD no longer grants this PSM MINTER_ROLE. The revocation is a public read, not a claim.\",\"to\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\"}},\"public_state_read\":null,\"role\":\"psm_prev_mint_retired\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x75cd7d5d9869d9555e5681e498ff51cd1e5b4073217bcdd2f67d5eb84a53761f",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b",
          "kind": "contract",
          "chain": "base",
          "role": "vault_v2_attested",
          "venue": null,
          "label": "KerneVault v2, the vault the signed attestation covers",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "Vault v2 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969195,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000001",
            "holds": true,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"KerneVault v2, the vault the signed attestation covers\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"Vault v2 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"vault_v2_attested\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x6f657a519acb5ab03428306bb44ce76c811d8b1d3d275cc86a6aeacc6a18a761",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac",
          "kind": "contract",
          "chain": "base",
          "role": "vault_v1_retired",
          "venue": null,
          "label": "KerneVault v1, retired and degraded, excluded from the attestation and disclosed as such",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "Vault v1 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969195,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000001",
            "holds": true,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"KerneVault v1, retired and degraded, excluded from the attestation and disclosed as such\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"Vault v1 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"vault_v1_retired\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x97f1f7863f40f2d63a9b6d55d8156ddb69db529ab60f71702976f1262aed2ac2",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x96F5102C15b839757f811A98cEc3725Ac21dFA14",
          "kind": "contract",
          "chain": "base",
          "role": "staked_vault",
          "venue": null,
          "label": "skUSD staking vault",
          "holds_protocol_funds": true,
          "backs_kusd": false,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x96F5102C15b839757f811A98cEc3725Ac21dFA14",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The skUSD vault is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0x96F5102C15b839757f811A98cEc3725Ac21dFA14 \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969195,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000001",
            "holds": true,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x96F5102C15b839757f811A98cEc3725Ac21dFA14\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"skUSD staking vault\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x96F5102C15b839757f811A98cEc3725Ac21dFA14 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The skUSD vault is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x96F5102C15b839757f811A98cEc3725Ac21dFA14\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"staked_vault\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0x74df79cc48f2af25ab0402a1166d53320ace7e3fddbe3d2cd0b29d8cf02c33a5",
        "membership_signature": null
      },
      {
        "statement": {
          "schema": "kerne-account-entry/v1",
          "address": "0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3",
          "kind": "contract",
          "chain": "base",
          "role": "liability_token",
          "venue": null,
          "label": "kUSD, the protocol liability this attestation is about",
          "holds_protocol_funds": false,
          "backs_kusd": false,
          "public_state_read": null,
          "note": null,
          "membership_proof": {
            "kind": "onchain_predicate",
            "as_of": "2026-07-28",
            "predicate": {
              "kind": "eth_call",
              "chain": "base",
              "chain_id": 8453,
              "to": "0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3",
              "data": "0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877",
              "expect": "0x0000000000000000000000000000000000000000000000000000000000000001",
              "means": "The kUSD token is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.",
              "cast": "cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \"hasRole(bytes32,address)(bool)\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org"
            },
            "secondary_predicate": null,
            "why_not_a_signature": "This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message."
          },
          "observation": {
            "observed_at_block": 49969195,
            "observed_value": "0x0000000000000000000000000000000000000000000000000000000000000000",
            "holds": false,
            "rpc_used": "https://base-rpc.publicnode.com"
          },
          "issued_at": 1786727734
        },
        "statement_canonical": "{\"address\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":false,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"kUSD, the protocol liability this attestation is about\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The kUSD token is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"liability_token\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null}",
        "statement_digest": "0xd3f79cb8643dfa933cae4707c3e5ad284ce302e8eb4c391708e45ff4d0010ac5",
        "membership_signature": null
      }
    ],
    "issued_at": 1786727734
  },
  "registry_canonical": "{\"account_set_digest\":\"0x7cab3570d7a8d142e44560a350765bf29e86a0b1ce6eb4c2747c8ec8975592e7\",\"as_of\":\"2026-07-28\",\"completeness_claim\":\"This is every account Kerne controls as of the stated date, except for the two externally owned addresses named at the end of this paragraph, which are disclosed here rather than listed as entries. Completeness cannot be proven by any signature scheme, and this registry does not claim otherwise. What makes it auditable is the chain rather than the list: protocol funds cannot reach an undisclosed account without first leaving one of the accounts on this list, and every one of those accounts has a public transaction history. The two exceptions are reachable only from the retired vault v1 0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac, which returns 0x57D400CEd462A01Ed51a5DE038f204Df49690A99 from exchangeDepositAddress() and 0xEc29739ff0217bA09016efDE91523544b9B8AcE8 from founder(). Neither has ever received anything from any Kerne contract, and both are named here so that a reader tracing that vault's outbound paths finds them in this document rather than only on chain. They are disclosed instead of enumerated because an entry for an externally owned address requires a membership signature from the key itself, and neither signature has been produced. Enumerating them without one would put an unsigned account on a signed list; naming them is the honest alternative, and each becomes a full entry if its key is ever used.\",\"disclosed_venue_deposits\":{\"accounts\":[{\"address\":\"0xD3800ceb6bBeB90101ed5d5A46017fE846c9509e\",\"asset\":\"kUSD\",\"backs_kusd\":false,\"chain\":\"base\",\"disclosed_at\":\"2026-08-14\",\"holds_protocol_funds\":false,\"kerne_controls\":false,\"public_per_address_read\":\"cast call 0xD3800ceb6bBeB90101ed5d5A46017fE846c9509e \\\"balanceOf(address)(uint256)\\\" <address> --rpc-url https://mainnet.base.org, then put the result through \\\"convertToAssets(uint256)\\\" on the same contract for the kUSD figure\",\"receives_from\":\"0x14f04cE02f35B29Af564A98544dD7e2393993946\",\"requires_authentication\":false,\"returns\":\"the exact share balance and kUSD value of any address in this vault, with no API key and no relationship to Euler or to Kerne\",\"symbol\":\"ekUSD-1\",\"venue\":\"euler_v2_edge_base\",\"what_it_is\":\"Escrow collateral vault for kUSD in the isolated kUSD/USDC market Kerne deployed on Euler v2 Edge on 2026-08-09. Escrow means non-borrowable by construction: kUSD deposited here is collateral only and cannot be lent to anyone.\",\"why_not_an_entry\":\"Governance on this vault was set to the zero address inside the transaction that created it, so nobody including Kerne can change a parameter on it, and Kerne holds no key for it. It is not a Kerne account and listing it as one would be a false claim of control.\"},{\"address\":\"0xe87c294E1139C31770727193e3Be0ccEd73d6AA3\",\"asset\":\"USDC\",\"backs_kusd\":false,\"chain\":\"base\",\"disclosed_at\":\"2026-08-14\",\"holds_protocol_funds\":false,\"kerne_controls\":false,\"public_per_address_read\":\"cast call 0xe87c294E1139C31770727193e3Be0ccEd73d6AA3 \\\"balanceOf(address)(uint256)\\\" <address> --rpc-url https://mainnet.base.org for the supplied side, \\\"convertToAssets(uint256)\\\" for its USDC value, and \\\"debtOf(address)(uint256)\\\" on the same contract for what that address has borrowed\",\"receives_from\":\"0x14f04cE02f35B29Af564A98544dD7e2393993946\",\"requires_authentication\":false,\"returns\":\"the exact supplied balance and the exact debt of any address in this vault, with no API key and no relationship to Euler or to Kerne\",\"symbol\":\"eUSDC-116\",\"venue\":\"euler_v2_edge_base\",\"what_it_is\":\"Borrowable USDC vault of the same market. USDC supplied here is what a borrower draws against kUSD collateral, and it is the leg an outside lender would supply to.\",\"why_not_an_entry\":\"Same as the collateral vault. Governance is the zero address, set atomically by the factory that deployed it, and Kerne holds no key for it.\"}],\"funds_sent_are\":\"Kerne's own capital, sent from the disclosed founder wallet 0x14f04cE02f35B29Af564A98544dD7e2393993946, which is entry 1 on this list. No PSM reserve is sent to these addresses and nothing that backs kUSD is sent to them. The reserves backing kUSD are enumerated as entries above and none of those accounts is a sender here, which is checkable on chain rather than promised.\",\"rule\":\"A venue contract that Kerne deposits into but does not control cannot be an entry on this list, because an entry asserts control and carries a proof of it, and Kerne has neither a key for such a contract nor the power to make it satisfy a predicate. Every one of them is named here instead, before any funds are sent, together with the read a stranger can run to see Kerne's balance there without Kerne's cooperation. The bar is the one hedge_venue_policy sets and it is not relaxed for this list: a venue with no public per-address read does not get disclosed and does not get deposited into. Disclosure here is not permission and it is not endorsement. It records that Kerne put its own money somewhere a reader can check, and it is the reason a balance found at one of these addresses is Kerne's own capital rather than evidence that anybody else wanted the venue.\",\"what_a_balance_here_means\":\"That Kerne supplied its own money to a venue it built, so the mechanism could be shown working rather than described. It is not demand, it is not adoption, and it is not a third party. Whether any of the capital in that market belongs to somebody other than Kerne is answered by subtraction at https://kerne.fi/api/euler, which reads Kerne's own position off chain and publishes the remainder.\"},\"entries\":[{\"membership_signature\":\"0x4e91dbe039c3c524b75e0663804146aa054f0ca71ea7f803ba4092884387dfc930e8734922ba3255233eebbb0ae39b3f5b98acf3cc1e3f68d699e9253fd17c921c\",\"statement\":{\"address\":\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\",\"backs_kusd\":false,\"chain\":\"base+hyperliquid\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"eoa\",\"label\":\"Hyperliquid margin account, and the protocol's on-chain sender. No longer the PoR attestation signer as of 2026-08-13\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"eoa_signature\",\"message\":\"I belong to Kerne as of 2026-07-28.\",\"verify\":\"cast wallet verify --address 0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e \\\"I belong to Kerne as of 2026-07-28.\\\" <membership_signature>\"},\"note\":\"This is the only venue account Kerne holds. It signs this registry and it signs the signer-registry entry that authorizes the attestation key, so it remains the trust root of both. It stopped signing the hourly attestation itself on 2026-08-13 under KRN-26-POR-SIGNER-VENUE-KEY, which Kerne disclosed in thread 1849 post 6 before fixing it. Attestations dated before that cutover recover to this address; later ones recover to the attestation signer named in the binding this account signed at https://kerne.fi/api/por/signer-registry.\",\"observation\":null,\"public_state_read\":\"POST https://api.hyperliquid.xyz/info with {\\\"type\\\":\\\"clearinghouseState\\\",\\\"user\\\":\\\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\\\"}\",\"role\":\"venue_margin\",\"schema\":\"kerne-account-entry/v1\",\"venue\":\"hyperliquid\"},\"statement_canonical\":\"{\\\"address\\\":\\\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base+hyperliquid\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"eoa\\\",\\\"label\\\":\\\"Hyperliquid margin account, and the protocol's on-chain sender. No longer the PoR attestation signer as of 2026-08-13\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"eoa_signature\\\",\\\"message\\\":\\\"I belong to Kerne as of 2026-07-28.\\\",\\\"verify\\\":\\\"cast wallet verify --address 0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e \\\\\\\"I belong to Kerne as of 2026-07-28.\\\\\\\" <membership_signature>\\\"},\\\"note\\\":\\\"This is the only venue account Kerne holds. It signs this registry and it signs the signer-registry entry that authorizes the attestation key, so it remains the trust root of both. It stopped signing the hourly attestation itself on 2026-08-13 under KRN-26-POR-SIGNER-VENUE-KEY, which Kerne disclosed in thread 1849 post 6 before fixing it. Attestations dated before that cutover recover to this address; later ones recover to the attestation signer named in the binding this account signed at https://kerne.fi/api/por/signer-registry.\\\",\\\"observation\\\":null,\\\"public_state_read\\\":\\\"POST https://api.hyperliquid.xyz/info with {\\\\\\\"type\\\\\\\":\\\\\\\"clearinghouseState\\\\\\\",\\\\\\\"user\\\\\\\":\\\\\\\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\\\\\\\"}\\\",\\\"role\\\":\\\"venue_margin\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":\\\"hyperliquid\\\"}\",\"statement_digest\":\"0x0eba3c77c7a9c3ee30352c74625944b0df662ed5c90712020f04e6498c77f610\"},{\"membership_signature\":\"0xacf271420742c7968b289e83645ee0df8fa5fadd11b3d0b2a3325e718885139d0684c45536b17591894ba4bab245921019fb9e851a52d4e7a341de39250376fc1c\",\"statement\":{\"address\":\"0x14f04cE02F35b29Af564a98544dD7E2393993946\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":false,\"issued_at\":1786727734,\"kind\":\"eoa\",\"label\":\"Founder-custodied watch-only float the hedge engine sizes its short against\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"eoa_signature\",\"message\":\"I belong to Kerne as of 2026-07-28.\",\"verify\":\"cast wallet verify --address 0x14f04cE02F35b29Af564a98544dD7E2393993946 \\\"I belong to Kerne as of 2026-07-28.\\\" <membership_signature>\"},\"note\":\"Backs no kUSD and enters no solvency ratio. It is on this list because it is inside the hedge base, and an account that moves the published delta measurement has to be enumerated even though it is not collateral. It is also an owner of the Kerne Safe.\",\"observation\":null,\"public_state_read\":\"cast balance 0x14f04cE02F35b29Af564a98544dD7E2393993946 --rpc-url https://mainnet.base.org\",\"role\":\"hedge_base_watch_only\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x14f04cE02F35b29Af564a98544dD7E2393993946\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":false,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"eoa\\\",\\\"label\\\":\\\"Founder-custodied watch-only float the hedge engine sizes its short against\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"eoa_signature\\\",\\\"message\\\":\\\"I belong to Kerne as of 2026-07-28.\\\",\\\"verify\\\":\\\"cast wallet verify --address 0x14f04cE02F35b29Af564a98544dD7E2393993946 \\\\\\\"I belong to Kerne as of 2026-07-28.\\\\\\\" <membership_signature>\\\"},\\\"note\\\":\\\"Backs no kUSD and enters no solvency ratio. It is on this list because it is inside the hedge base, and an account that moves the published delta measurement has to be enumerated even though it is not collateral. It is also an owner of the Kerne Safe.\\\",\\\"observation\\\":null,\\\"public_state_read\\\":\\\"cast balance 0x14f04cE02F35b29Af564a98544dD7E2393993946 --rpc-url https://mainnet.base.org\\\",\\\"role\\\":\\\"hedge_base_watch_only\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0xa7ea88049ee9c8308055016f517f62cb42c614bce50db1c9415e04388e2b274d\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Kerne Safe, 2-of-3, DEFAULT_ADMIN_ROLE on every protocol contract below\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \\\"getOwners()(address[])\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0xa0e67e2b\",\"expect_contains_address\":\"0x14f04cE02F35b29Af564a98544dD7E2393993946\",\"kind\":\"eth_call\",\"means\":\"The Safe's owner set contains the disclosed EOA 0x14f04cE02F35b29Af564a98544dD7E2393993946, which signs the membership message on this list. That is the hop that closes the chain from every protocol contract to a signing key.\",\"to\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Threshold 2 of 3. The owner set is a public read and needs no disclosure from Kerne to be checked. One owner is 0x14f04cE02F35b29Af564a98544dD7E2393993946, which is enumerated above and signs the membership message. The other two are individual co-signer keys. They hold no protocol funds and receive none, so they are authorization keys rather than accounts in the sense this registry enumerates, and Kerne does not publish the identity behind either. The rule Kerne accepts is the sharp version: if protocol funds are ever sent to a co-signer key, that key becomes an enumerable account and must appear here with a membership signature of its own.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969193,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000020000000000000000000000000000000000000000000000000000000000000000300000000000000000000000014f04ce02f35b29af564a98544dd7e23939939460000000000000000000000000cec7021f4c20f3d5ebb55c1ac591c15efbb7895000000000000000000000000f4a43c88b7370bd6e370c7af5fe663c6d223b3fb\",\"rpc_used\":\"https://mainnet.base.org\"},\"public_state_read\":\"cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \\\"getOwners()(address[])\\\" --rpc-url https://mainnet.base.org\",\"role\":\"admin_multisig\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Kerne Safe, 2-of-3, DEFAULT_ADMIN_ROLE on every protocol contract below\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \\\\\\\"getOwners()(address[])\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0xa0e67e2b\\\",\\\"expect_contains_address\\\":\\\"0x14f04cE02F35b29Af564a98544dD7E2393993946\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The Safe's owner set contains the disclosed EOA 0x14f04cE02F35b29Af564a98544dD7E2393993946, which signs the membership message on this list. That is the hop that closes the chain from every protocol contract to a signing key.\\\",\\\"to\\\":\\\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":\\\"Threshold 2 of 3. The owner set is a public read and needs no disclosure from Kerne to be checked. One owner is 0x14f04cE02F35b29Af564a98544dD7E2393993946, which is enumerated above and signs the membership message. The other two are individual co-signer keys. They hold no protocol funds and receive none, so they are authorization keys rather than accounts in the sense this registry enumerates, and Kerne does not publish the identity behind either. The rule Kerne accepts is the sharp version: if protocol funds are ever sent to a co-signer key, that key becomes an enumerable account and must appear here with a membership signature of its own.\\\",\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969193,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000020000000000000000000000000000000000000000000000000000000000000000300000000000000000000000014f04ce02f35b29af564a98544dd7e23939939460000000000000000000000000cec7021f4c20f3d5ebb55c1ac591c15efbb7895000000000000000000000000f4a43c88b7370bd6e370c7af5fe663c6d223b3fb\\\",\\\"rpc_used\\\":\\\"https://mainnet.base.org\\\"},\\\"public_state_read\\\":\\\"cast call 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 \\\\\\\"getOwners()(address[])\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"role\\\":\\\"admin_multisig\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x7b07437796ac14a8b42e7d35f748c0b1e82d2ac9f607e3c30246d29d66f5be94\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Protocol treasury, the fee destination of the live mint PSM\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x5343C41d4FF2B61DAacA9cbC050550C40605B075 \\\"owner()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x8da5cb5b\",\"expect_address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"kind\":\"eth_call\",\"means\":\"The protocol treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\",\"to\":\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\"},\"secondary_predicate\":{\"cast\":\"cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \\\"treasury()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x61d027b3\",\"expect_address\":\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\",\"kind\":\"eth_call\",\"means\":\"The live mint PSM's own treasury() resolves to this address, so this is where protocol fees actually go. Any registry naming a different treasury is falsifiable against this one call.\",\"to\":\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Deployed 2026-06-16 and made the fee destination when the Safe executed setTreasury on the mint PSM 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 on 2026-07-13. The secondary predicate below reads that pointer off the PSM rather than asserting it, so which treasury is live is a public read and not something a reader has to take from Kerne. Between 2026-07-13 and 2026-07-29 this registry named the superseded treasury below instead, which was wrong and was correctable against exactly the call published here.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969193,\"observed_value\":\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"rpc_used\":\"https://mainnet.base.org\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969193,\"observed_value\":\"0x0000000000000000000000005343c41d4ff2b61daaca9cbc050550c40605b075\",\"rpc_used\":\"https://mainnet.base.org\"}},\"public_state_read\":null,\"role\":\"treasury\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Protocol treasury, the fee destination of the live mint PSM\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x5343C41d4FF2B61DAacA9cbC050550C40605B075 \\\\\\\"owner()(address)\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x8da5cb5b\\\",\\\"expect_address\\\":\\\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The protocol treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\\\",\\\"to\\\":\\\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\\\"},\\\"secondary_predicate\\\":{\\\"cast\\\":\\\"cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \\\\\\\"treasury()(address)\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x61d027b3\\\",\\\"expect_address\\\":\\\"0x5343C41d4FF2B61DAacA9cbC050550C40605B075\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The live mint PSM's own treasury() resolves to this address, so this is where protocol fees actually go. Any registry naming a different treasury is falsifiable against this one call.\\\",\\\"to\\\":\\\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\\\"},\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":\\\"Deployed 2026-06-16 and made the fee destination when the Safe executed setTreasury on the mint PSM 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 on 2026-07-13. The secondary predicate below reads that pointer off the PSM rather than asserting it, so which treasury is live is a public read and not something a reader has to take from Kerne. Between 2026-07-13 and 2026-07-29 this registry named the superseded treasury below instead, which was wrong and was correctable against exactly the call published here.\\\",\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969193,\\\"observed_value\\\":\\\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"rpc_used\\\":\\\"https://mainnet.base.org\\\",\\\"secondary\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969193,\\\"observed_value\\\":\\\"0x0000000000000000000000005343c41d4ff2b61daaca9cbc050550c40605b075\\\",\\\"rpc_used\\\":\\\"https://mainnet.base.org\\\"}},\\\"public_state_read\\\":null,\\\"role\\\":\\\"treasury\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x24f9797d668a1b83eb592121b9dacf1cace2be80a90e59bb04e370c7d1b4a44e\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Prior treasury. Superseded as the mint PSM's fee destination on 2026-07-13, but still the fee destination of the attested vault v2 and of the retired mint PSM\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \\\"owner()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x8da5cb5b\",\"expect_address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"kind\":\"eth_call\",\"means\":\"The superseded treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\",\"to\":\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\"},\"secondary_predicate\":{\"cast\":\"cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \\\"kerneToken()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x7df416ed\",\"expect_address\":\"0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340\",\"kind\":\"eth_call\",\"means\":\"Its kerneToken() still resolves to the retired KERNE v1 0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340, which is the on-chain proof that this is the older instance rather than the live one. Supersession is a read, not a claim.\",\"to\":\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Described as superseded rather than retired, because it is not dormant and saying so would be the same species of error this entry exists to correct. Vault v2, the vault the hourly attestation covers, still returns this address from treasury(), as does the retired mint PSM. It is therefore a live destination of two accounts on this list. It also runs the pre-patch bytecode, whose executeBuyback carries no keeper gate, so value arriving here would be exposed to a call anyone can make. It holds zero. Repointing the two remaining references is an open Safe action, not a completed one, and Kerne routes nothing here in the meantime.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"rpc_used\":\"https://mainnet.base.org\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x000000000000000000000000fea3d217f5f2304c8551dc9f5b5169f2c2d87340\",\"rpc_used\":\"https://mainnet.base.org\"}},\"public_state_read\":null,\"role\":\"treasury_v2_superseded\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Prior treasury. Superseded as the mint PSM's fee destination on 2026-07-13, but still the fee destination of the attested vault v2 and of the retired mint PSM\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \\\\\\\"owner()(address)\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x8da5cb5b\\\",\\\"expect_address\\\":\\\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The superseded treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\\\",\\\"to\\\":\\\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\\\"},\\\"secondary_predicate\\\":{\\\"cast\\\":\\\"cast call 0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5 \\\\\\\"kerneToken()(address)\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x7df416ed\\\",\\\"expect_address\\\":\\\"0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"Its kerneToken() still resolves to the retired KERNE v1 0xfEA3D217F5f2304C8551dc9F5B5169F2c2d87340, which is the on-chain proof that this is the older instance rather than the live one. Supersession is a read, not a claim.\\\",\\\"to\\\":\\\"0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5\\\"},\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":\\\"Described as superseded rather than retired, because it is not dormant and saying so would be the same species of error this entry exists to correct. Vault v2, the vault the hourly attestation covers, still returns this address from treasury(), as does the retired mint PSM. It is therefore a live destination of two accounts on this list. It also runs the pre-patch bytecode, whose executeBuyback carries no keeper gate, so value arriving here would be exposed to a call anyone can make. It holds zero. Repointing the two remaining references is an open Safe action, not a completed one, and Kerne routes nothing here in the meantime.\\\",\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"rpc_used\\\":\\\"https://mainnet.base.org\\\",\\\"secondary\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x000000000000000000000000fea3d217f5f2304c8551dc9f5b5169f2c2d87340\\\",\\\"rpc_used\\\":\\\"https://mainnet.base.org\\\"}},\\\"public_state_read\\\":null,\\\"role\\\":\\\"treasury_v2_superseded\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0xcb049aedd59b1408c4a38bad8dd55171d7c03de1fbdb538b0f31a558370c2efd\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x0067F4957dea17CF76665F6A6585F6a904362106\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Legacy treasury, superseded 2026-05-16. Still the fee destination of vault v1\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x0067F4957dea17CF76665F6A6585F6a904362106 \\\"owner()(address)\\\" --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x8da5cb5b\",\"expect_address\":\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\",\"kind\":\"eth_call\",\"means\":\"The legacy treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\",\"to\":\"0x0067F4957dea17CF76665F6A6585F6a904362106\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Superseded because its deployed bytecode was slimmed after deployment and no longer matched any committed source, so it could not be verified. It is enumerated for the same reason as the treasury above it: vault v1, which is on this list, still returns it from treasury(), so a reader tracing that vault's destination has to be able to find it here. It holds zero.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"treasury_v1_superseded\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x0067F4957dea17CF76665F6A6585F6a904362106\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Legacy treasury, superseded 2026-05-16. Still the fee destination of vault v1\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x0067F4957dea17CF76665F6A6585F6a904362106 \\\\\\\"owner()(address)\\\\\\\" --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x8da5cb5b\\\",\\\"expect_address\\\":\\\"0x52d3E450Ba6c299b1b07298F1E87dD74732D4877\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The legacy treasury: owner() is the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877.\\\",\\\"to\\\":\\\"0x0067F4957dea17CF76665F6A6585F6a904362106\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":\\\"Superseded because its deployed bytecode was slimmed after deployment and no longer matched any committed source, so it could not be verified. It is enumerated for the same reason as the treasury above it: vault v1, which is on this list, still returns it from treasury(), so a reader tracing that vault's destination has to be able to find it here. It holds zero.\\\",\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x00000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"treasury_v1_superseded\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x1cc9acf412f25c94a9debe4bc9f3546fb6f97d65acadde6a0e1b2cfff8ff9d24\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0xE8799FCf327C6d2F78103a3C9308c93592a30403\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Insurance fund\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0xE8799FCf327C6d2F78103a3C9308c93592a30403 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0xE8799FCf327C6d2F78103a3C9308c93592a30403\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"insurance_fund\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0xE8799FCf327C6d2F78103a3C9308c93592a30403\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Insurance fund\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0xE8799FCf327C6d2F78103a3C9308c93592a30403 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0xE8799FCf327C6d2F78103a3C9308c93592a30403\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"insurance_fund\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0xe1c38fc775414531da18ce66b149ae8205314187a63d9e1fa601101278436332\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Legacy insurance fund, superseded 2026-05-16. Still the insurance destination of vault v1 and of the redeem PSM\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The legacy insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":\"Superseded because its deployed bytecode diverged from any committed source. It stays enumerated because vault v1 and the redeem-side PSM, both on this list, still return it from insuranceFund(), so it is a live destination of two listed accounts even though Kerne routes nothing to it. It holds zero.\",\"observation\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"insurance_fund_v1_superseded\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Legacy insurance fund, superseded 2026-05-16. Still the insurance destination of vault v1 and of the redeem PSM\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The legacy insurance fund is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":\\\"Superseded because its deployed bytecode diverged from any committed source. It stays enumerated because vault v1 and the redeem-side PSM, both on this list, still return it from insuranceFund(), so it is a live destination of two listed accounts even though Kerne routes nothing to it. It holds zero.\\\",\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"insurance_fund_v1_superseded\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x611e2b8be46220820ae3200b02b254b472b4676398657157f497454f0347bc6d\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\",\"backs_kusd\":true,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Live mint PSM. Holds USDC that backs kUSD\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The live mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\"},\"secondary_predicate\":{\"cast\":\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\"hasRole(bytes32,address)(bool)\\\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6000000000000000000000000abde1138aa1ce88d1df06422c0c3b05d70569803\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"kUSD grants this PSM MINTER_ROLE, so it is the live mint path rather than a contract we merely claim.\",\"to\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"}},\"public_state_read\":null,\"role\":\"psm_mint\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\\\",\\\"backs_kusd\\\":true,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Live mint PSM. Holds USDC that backs kUSD\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The live mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803\\\"},\\\"secondary_predicate\\\":{\\\"cast\\\":\\\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6000000000000000000000000abde1138aa1ce88d1df06422c0c3b05d70569803\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"kUSD grants this PSM MINTER_ROLE, so it is the live mint path rather than a contract we merely claim.\\\",\\\"to\\\":\\\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\\\"},\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":false,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000000\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\",\\\"secondary\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"}},\\\"public_state_read\\\":null,\\\"role\\\":\\\"psm_mint\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x0f7507d76cab226706929b3e42518dd1cd103c35236cb338fe48059abc6c2692\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc\",\"backs_kusd\":true,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Redeem-side PSM reserve. Holds USDC that backs kUSD\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The redeem PSM reserve is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"psm_redeem_reserve\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc\\\",\\\"backs_kusd\\\":true,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Redeem-side PSM reserve. Holds USDC that backs kUSD\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The redeem PSM reserve is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":false,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000000\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"psm_redeem_reserve\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0xa1bb21ffba208a0a76e72dd95b27270b244bad0d48fdc4df0d653de893248540\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x07eBb486e11BD217e6085eb5ab663e4517595993\",\"backs_kusd\":true,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"Prior mint PSM, MINTER revoked 2026-07-10. Still holds USDC that backs kUSD minted through it\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x07eBb486e11BD217e6085eb5ab663e4517595993 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The retired mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x07eBb486e11BD217e6085eb5ab663e4517595993\"},\"secondary_predicate\":{\"cast\":\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\"hasRole(bytes32,address)(bool)\\\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0x07eBb486e11BD217e6085eb5ab663e4517595993 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a600000000000000000000000007ebb486e11bd217e6085eb5ab663e4517595993\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"kind\":\"eth_call\",\"means\":\"kUSD no longer grants this PSM MINTER_ROLE. The revocation is a public read, not a claim.\",\"to\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\"},\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969194,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\",\"secondary\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\"}},\"public_state_read\":null,\"role\":\"psm_prev_mint_retired\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x07eBb486e11BD217e6085eb5ab663e4517595993\\\",\\\"backs_kusd\\\":true,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"Prior mint PSM, MINTER revoked 2026-07-10. Still holds USDC that backs kUSD minted through it\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x07eBb486e11BD217e6085eb5ab663e4517595993 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The retired mint PSM is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0x07eBb486e11BD217e6085eb5ab663e4517595993\\\"},\\\"secondary_predicate\\\":{\\\"cast\\\":\\\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x9f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a6 0x07eBb486e11BD217e6085eb5ab663e4517595993 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d148549f2df0fed2c77648de5860a4cc508cd0818c85b8b8a1ab4ceeef8d981c8956a600000000000000000000000007ebb486e11bd217e6085eb5ab663e4517595993\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000000\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"kUSD no longer grants this PSM MINTER_ROLE. The revocation is a public read, not a claim.\\\",\\\"to\\\":\\\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\\\"},\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":false,\\\"observed_at_block\\\":49969194,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000000\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\",\\\"secondary\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969195,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000000\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"}},\\\"public_state_read\\\":null,\\\"role\\\":\\\"psm_prev_mint_retired\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x75cd7d5d9869d9555e5681e498ff51cd1e5b4073217bcdd2f67d5eb84a53761f\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"KerneVault v2, the vault the signed attestation covers\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"Vault v2 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"vault_v2_attested\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"KerneVault v2, the vault the signed attestation covers\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"Vault v2 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969195,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"vault_v2_attested\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x6f657a519acb5ab03428306bb44ce76c811d8b1d3d275cc86a6aeacc6a18a761\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"KerneVault v1, retired and degraded, excluded from the attestation and disclosed as such\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"Vault v1 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"vault_v1_retired\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"KerneVault v1, retired and degraded, excluded from the attestation and disclosed as such\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"Vault v1 is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969195,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"vault_v1_retired\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x97f1f7863f40f2d63a9b6d55d8156ddb69db529ab60f71702976f1262aed2ac2\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x96F5102C15b839757f811A98cEc3725Ac21dFA14\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":true,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"skUSD staking vault\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x96F5102C15b839757f811A98cEc3725Ac21dFA14 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The skUSD vault is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x96F5102C15b839757f811A98cEc3725Ac21dFA14\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":true,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"staked_vault\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x96F5102C15b839757f811A98cEc3725Ac21dFA14\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":true,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"skUSD staking vault\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x96F5102C15b839757f811A98cEc3725Ac21dFA14 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The skUSD vault is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0x96F5102C15b839757f811A98cEc3725Ac21dFA14\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":true,\\\"observed_at_block\\\":49969195,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"staked_vault\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0x74df79cc48f2af25ab0402a1166d53320ace7e3fddbe3d2cd0b29d8cf02c33a5\"},{\"membership_signature\":null,\"statement\":{\"address\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\",\"backs_kusd\":false,\"chain\":\"base\",\"holds_protocol_funds\":false,\"issued_at\":1786727734,\"kind\":\"contract\",\"label\":\"kUSD, the protocol liability this attestation is about\",\"membership_proof\":{\"as_of\":\"2026-07-28\",\"kind\":\"onchain_predicate\",\"predicate\":{\"cast\":\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\"hasRole(bytes32,address)(bool)\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\",\"chain\":\"base\",\"chain_id\":8453,\"data\":\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\",\"expect\":\"0x0000000000000000000000000000000000000000000000000000000000000001\",\"kind\":\"eth_call\",\"means\":\"The kUSD token is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\",\"to\":\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\"},\"secondary_predicate\":null,\"why_not_a_signature\":\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\"},\"note\":null,\"observation\":{\"holds\":false,\"observed_at_block\":49969195,\"observed_value\":\"0x0000000000000000000000000000000000000000000000000000000000000000\",\"rpc_used\":\"https://base-rpc.publicnode.com\"},\"public_state_read\":null,\"role\":\"liability_token\",\"schema\":\"kerne-account-entry/v1\",\"venue\":null},\"statement_canonical\":\"{\\\"address\\\":\\\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\\\",\\\"backs_kusd\\\":false,\\\"chain\\\":\\\"base\\\",\\\"holds_protocol_funds\\\":false,\\\"issued_at\\\":1786727734,\\\"kind\\\":\\\"contract\\\",\\\"label\\\":\\\"kUSD, the protocol liability this attestation is about\\\",\\\"membership_proof\\\":{\\\"as_of\\\":\\\"2026-07-28\\\",\\\"kind\\\":\\\"onchain_predicate\\\",\\\"predicate\\\":{\\\"cast\\\":\\\"cast call 0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3 \\\\\\\"hasRole(bytes32,address)(bool)\\\\\\\" 0x0000000000000000000000000000000000000000000000000000000000000000 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877 --rpc-url https://mainnet.base.org\\\",\\\"chain\\\":\\\"base\\\",\\\"chain_id\\\":8453,\\\"data\\\":\\\"0x91d14854000000000000000000000000000000000000000000000000000000000000000000000000000000000000000052d3e450ba6c299b1b07298f1e87dd74732d4877\\\",\\\"expect\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000001\\\",\\\"kind\\\":\\\"eth_call\\\",\\\"means\\\":\\\"The kUSD token is administered by the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owners are public and one of which signs the membership message on this list.\\\",\\\"to\\\":\\\"0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3\\\"},\\\"secondary_predicate\\\":null,\\\"why_not_a_signature\\\":\\\"This account is a contract and has no private key, so it cannot produce the membership signature. Its membership is published as an on-chain predicate instead: an exact call, the value it must return, and the block at which Kerne observed it. Anyone can re-run it against any Base node. The predicate resolves to the Kerne Safe 0x52d3E450Ba6c299b1b07298F1E87dD74732D4877, whose owner set is a public read and includes 0x14f04cE02F35b29Af564a98544dD7E2393993946, which does sign the message.\\\"},\\\"note\\\":null,\\\"observation\\\":{\\\"holds\\\":false,\\\"observed_at_block\\\":49969195,\\\"observed_value\\\":\\\"0x0000000000000000000000000000000000000000000000000000000000000000\\\",\\\"rpc_used\\\":\\\"https://base-rpc.publicnode.com\\\"},\\\"public_state_read\\\":null,\\\"role\\\":\\\"liability_token\\\",\\\"schema\\\":\\\"kerne-account-entry/v1\\\",\\\"venue\\\":null}\",\"statement_digest\":\"0xd3f79cb8643dfa933cae4707c3e5ad284ce302e8eb4c391708e45ff4d0010ac5\"}],\"hedge_venue_policy\":{\"admissible_venues\":{\"hyperliquid\":{\"public_per_address_read\":\"POST https://api.hyperliquid.xyz/info with {\\\"type\\\":\\\"clearinghouseState\\\",\\\"user\\\":\\\"<address>\\\"}\",\"requires_authentication\":false,\"returns\":\"account value, margin summary and every open position for the address, with no API key and no relationship to the venue\"}},\"inadmissible_examples\":[\"any centralized exchange that publishes only aggregate proof of reserves, because a third party cannot isolate Kerne's balance\",\"any venue where per-address state requires an authenticated session, because the read is then a favour to us rather than a public fact\"],\"rule\":\"Kerne may hold margin only on venues that publish per-address state, so that any third party can read Kerne's balance at that venue without Kerne's cooperation. A venue with no public per-address read is inadmissible, and an entry naming one makes this registry invalid rather than merely flagged.\"},\"issued_at\":1786727734,\"membership_message\":\"I belong to Kerne as of 2026-07-28.\",\"membership_message_template\":\"I belong to Kerne as of %s.\",\"operator\":\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\",\"registry_version\":5,\"schema\":\"kerne-account-registry/v1\",\"specified_by\":\"Euler governance thread 1849, post 7, 2026-07-25, by Oleg_Aleksandrov. The message text, the venue constraint and the no-paid-attestor requirement are his, not ours.\",\"violation_predicate\":\"A transfer from any account on this list to an address that is neither on this list nor a user redemption is a violation of this published rule, and it is visible to anyone watching the chain. Movement between listed accounts is normal. Sending USDC to a user through redemption is normal. Sending funds to a venue account that is not on this list is not. One case is neither of those and it is handled by disclosure rather than by an exception. A venue contract that Kerne deposits into but does not control cannot be an entry, because an entry asserts control and carries a proof of it, and Kerne has neither a key for such a contract nor the power to make it satisfy a predicate. Every one of them is named under disclosed_venue_deposits, with the read anyone can run to see Kerne's balance there. The disclosure has to appear in a registry version whose issued_at precedes the transfer, so a deposit into a venue this document did not already name is still a violation and the timestamps are the check. Naming it afterwards does not cure it.\"}",
  "registry_digest": "0x489712f75a593c2b36b56f1771b2e1b8dda5766fd4afd7cd45784fd4089f720a",
  "operator_signature": "0x70b2bb523d3521a2341a22bc4eb16b338d6dd0dba2344fd2a30ce69d73f131225a554dd5d82a36a0facf76cd4cc35e6f7925db8ae27cd8ce27b59c9132dd67ec1b",
  "_meta": {
    "served_by": "kerne.fi /api/por/accounts",
    "source": {
      "path": "/opt/kerne/bot/docs/reports/por/account_registry.json",
      "producer": "bot/account_registry.py",
      "publisher": "kerne-por-public.service (systemd, port 8788)"
    },
    "specified_by": "Euler governance thread 1849, post 7, 2026-07-25, by Oleg_Aleksandrov. The message text, the venue constraint and the no-paid-attestor requirement are his, not ours.",
    "membership_message_template": "I belong to Kerne as of %s.",
    "venue_trust_root": "0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e",
    "venue_account_read": "POST https://api.hyperliquid.xyz/info with {\"type\":\"clearinghouseState\",\"user\":\"0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e\"}",
    "min_registry_version": 5,
    "registry_digest_matches": true,
    "operator_signature_valid": true,
    "operator": "0x09a2780ac8be6d5d2d1f85a8d92b09d40c9ca37e",
    "operator_is_trust_root": true,
    "registry_version": 5,
    "as_of": "2026-07-28",
    "entries_total": 15,
    "entries_ok": 15,
    "signed_accounts": 2,
    "predicate_accounts": 13,
    "account_set_digest": "0x7cab3570d7a8d142e44560a350765bf29e86a0b1ce6eb4c2747c8ec8975592e7",
    "account_set_digest_matches": true,
    "venue_policy_ok": true,
    "venue_policy_violations": [],
    "disclosed_venue_deposits_ok": true,
    "disclosed_venue_deposit_violations": [],
    "disclosed_venue_deposits_total": 2,
    "message_template_is_specified": true,
    "entry_verdicts": [
      {
        "digest_matches": true,
        "address": "0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e",
        "kind": "eoa",
        "role": "venue_margin",
        "venue": "hyperliquid",
        "proof_kind": "eoa_signature",
        "message_is_specified_text": true,
        "membership_signature_valid": true,
        "signed_by_the_account": true,
        "predicate_published": false,
        "predicate_observed_true": null,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x14f04cE02F35b29Af564a98544dD7E2393993946",
        "kind": "eoa",
        "role": "hedge_base_watch_only",
        "venue": null,
        "proof_kind": "eoa_signature",
        "message_is_specified_text": true,
        "membership_signature_valid": true,
        "signed_by_the_account": true,
        "predicate_published": false,
        "predicate_observed_true": null,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x52d3E450Ba6c299b1b07298F1E87dD74732D4877",
        "kind": "contract",
        "role": "admin_multisig",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x5343C41d4FF2B61DAacA9cbC050550C40605B075",
        "kind": "contract",
        "role": "treasury",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x7c07517ABcc4BD674CC74B76D2Ab0d95A41560d5",
        "kind": "contract",
        "role": "treasury_v2_superseded",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x0067F4957dea17CF76665F6A6585F6a904362106",
        "kind": "contract",
        "role": "treasury_v1_superseded",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0xE8799FCf327C6d2F78103a3C9308c93592a30403",
        "kind": "contract",
        "role": "insurance_fund",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x3C93E231a3b74659ABfCA95dFf2eC9a8525b08B9",
        "kind": "contract",
        "role": "insurance_fund_v1_superseded",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0xaBDE1138aa1Ce88d1DF06422C0c3b05d70569803",
        "kind": "contract",
        "role": "psm_mint",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": false,
        "entry_ok": true,
        "warning": "Kerne's own last observation of this predicate did NOT hold. The entry is published anyway, with the failure visible, rather than dropped."
      },
      {
        "digest_matches": true,
        "address": "0xFf3025ec18e301855aB0f36Ec6ECa115a29A5Fbc",
        "kind": "contract",
        "role": "psm_redeem_reserve",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": false,
        "entry_ok": true,
        "warning": "Kerne's own last observation of this predicate did NOT hold. The entry is published anyway, with the failure visible, rather than dropped."
      },
      {
        "digest_matches": true,
        "address": "0x07eBb486e11BD217e6085eb5ab663e4517595993",
        "kind": "contract",
        "role": "psm_prev_mint_retired",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": false,
        "entry_ok": true,
        "warning": "Kerne's own last observation of this predicate did NOT hold. The entry is published anyway, with the failure visible, rather than dropped."
      },
      {
        "digest_matches": true,
        "address": "0x8ccc56B5624e2fdb592f6609d81f4c3798e3292b",
        "kind": "contract",
        "role": "vault_v2_attested",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x8005bc7A86Ad904C20fd62788AbED7546c1cf2Ac",
        "kind": "contract",
        "role": "vault_v1_retired",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x96F5102C15b839757f811A98cEc3725Ac21dFA14",
        "kind": "contract",
        "role": "staked_vault",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": true,
        "entry_ok": true,
        "warning": null
      },
      {
        "digest_matches": true,
        "address": "0x5C2eFdF0d8d286959b42308966bc2b97F5680aA3",
        "kind": "contract",
        "role": "liability_token",
        "venue": null,
        "proof_kind": "onchain_predicate",
        "message_is_specified_text": false,
        "membership_signature_valid": false,
        "signed_by_the_account": false,
        "predicate_published": true,
        "predicate_observed_true": false,
        "entry_ok": true,
        "warning": "Kerne's own last observation of this predicate did NOT hold. The entry is published anyway, with the failure visible, rather than dropped."
      }
    ],
    "registry_ok": true,
    "warning": null,
    "note": "Gate on registry_ok. It is true only when the whole ordered entry list was signed by the venue account (so no account has been dropped from what you are reading), every EOA signed the specified membership sentence and each signature recovers to the account it claims to be from, every contract publishes a runnable predicate, the venue constraint holds, and account_set_digest describes these entries. That last one is the value bound into the hourly attestation, which is what makes \"these are all of them\" a signed claim rather than an assurance.",
    "what_this_endpoint_does_not_assert": "That the on-chain predicates are currently true. This runtime has no RPC, and a verifier claiming to have checked a chain fact it never read would be the same unverifiable assurance the enumeration exists to remove. Kerne's own last observation of each predicate is republished with its block number so you can compare it against your own read. Run the predicates; do not take them from us.",
    "verify": {
      "algorithm": "Membership signatures are EIP-191 personal_sign over the UTF-8 sentence itself, so the thing signed is the thing published. The registry-wide signature is EIP-191 over \"0x\"+sha256(canonical bytes), the same scheme as the attestation.",
      "canonical_fields": [
        "registry_canonical",
        "entries[].statement_canonical"
      ],
      "note": "Hash the published canonical bytes and read fields out of those same bytes. Do not re-serialize the readable objects: they are convenience copies and are not what was signed.",
      "cli_cast": "curl -s https://kerne.fi/api/por/accounts > acc.json\n# 1. the list was signed as a whole, so nothing was dropped\njq -r .registry_canonical acc.json | tr -d \"\\n\" | sha256sum   # equals registry_digest\ncast wallet verify --address 0x09a2780ac8Be6D5d2d1F85A8D92b09D40C9CA37e $(jq -r .registry_digest acc.json) $(jq -r .operator_signature acc.json)\n# 2. each EOA signed the sentence\njq -r '.registry.entries[] | select(.statement.kind==\"eoa\") | \"cast wallet verify --address \\(.statement.address) \\\"\\(.statement.membership_proof.message)\\\" \\(.membership_signature)\"' acc.json\n# 3. each contract predicate, run it yourself\njq -r '.registry.entries[].statement.membership_proof.predicate.cast // empty' acc.json"
    },
    "cross_links": {
      "signed_por": "https://kerne.fi/api/por/signed",
      "unsigned_live_por": "https://kerne.fi/api/por",
      "schema_changelog": "https://kerne.fi/api/por/schema-changelog"
    }
  }
}