# Gnosis Chain Markdown version of https://l2beat.com/layer2s/projects/gnosis ## Summary - Total Value Secured: $299.02 M (+1.61% compared to seven days ago; canonically bridged $276.92 M, natively minted $22.10 M, externally bridged $0.00; 0.00% with additional trust assumptions compared to the tokens involved and the Stage assigned to the project's canonical messaging bridge) - **Warning:** The GNO token associated with Gnosis Chain accounts for 58.1% of the TVS! (sentiment: warning) - Past day UOPS: 4.11 (-3.03% compared to seven days ago) - Gas token: XDAI - Type: Other - Purpose: Universal - Host chain: Ethereum - Chain ID: 100 ### Risks - Sequencer failure: Decentralized Sequencer Set (sentiment: good) - State validation: None (sentiment: bad) - Data availability: PoS network (sentiment: bad) - Exit window: None (sentiment: bad) - Proposer failure: Cannot withdraw (sentiment: bad) ### About Gnosis Chain is a community-owned EVM-based sidechain operated by a proof-of-stake validator set aiming to be the first chain in the Ethereum Economic Zone (EEZ). Its canonical Ethereum bridge ('Gnosis Bridge') is validated by dedicated bridge validator multisigs (not the PoS validator set) and supports the yielding bridge for the chain's gas-token xDAI as well as token transfers and messaging. This page looks at both the PoS chain and the canonical bridge to Ethereum from an Ethereum-centric perspective. ## Value Secured Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/gnosis#tvs). - [TVS chart (JSON)](https://l2beat.com/api/scaling/tvs/gnosis) - [TVS breakdown by token (JSON)](https://l2beat.com/api/scaling/tvs/gnosis/breakdown) ## Volume and flows Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/gnosis#interop-flows). ## Activity Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/gnosis#activity). - [Activity chart (JSON)](https://l2beat.com/api/scaling/activity/gnosis) ## Milestones & Incidents - 2026-04-14: [Fusaka upgrade](https://github.com/gnosischain/specs). Gnosis Chain activates its Fusaka network upgrade. - 2025-11-07: [USDS migration on xDAI bridge](https://docs.gnosischain.com/bridges/management/decisions). The xDAI bridge makes USDS the default Ethereum-side backing asset. - 2025-04-30: [Pectra upgrade](https://github.com/gnosischain/specs). Gnosis Chain activates its Pectra network upgrade. - 2022-12-08: [Gnosis Chain Merge](https://docs.gnosischain.com/about/specs/hard-forks/merge). Gnosis Chain switches from AuRa proof of authority to proof of stake. - 2021-11-08: [xDAI and Gnosis merge](https://forum.gnosis.io/t/gip-16-gnosis-chain-xdai-gnosis-merge/1904). The xDAI and Gnosis communities propose combining their ecosystems under the Gnosis Chain name. ## Detailed description Gnosis Chain is a community-owned EVM-based sidechain operated by a proof-of-stake validator set aiming to be the first chain in the Ethereum Economic Zone (EEZ). Its canonical Ethereum bridge ('Gnosis Bridge') is validated by dedicated bridge validator multisigs (not the PoS validator set) and supports the yielding bridge for the chain's gas-token xDAI as well as token transfers and messaging. This page looks at both the PoS chain and the canonical bridge to Ethereum from an Ethereum-centric perspective. Gnosis chain in its current form does not derive or benefit from Ethereum's decentralisation apart from being developed as a close fork to re-use Ethereum tooling and infrastructure. Its censorship resistance relies on an open set of 52,352 active validator indices, although the clustering and stake distribution among entities is intransparent. Users who are censored selectively on an otherwise live network benefit from the fast 5s block time and non-committee-gated, stake-weighted proposer rotation, resulting in an inclusion probability of 99% in less than a minute even if up to 50% of the Gnosis stake is censoring them. There are also a few thousand validators who run custom 'shutter network' nodes that support threshold-encrypted transactions. For a case of active blanket censorship (>50% stake) by all current validators, users have no way apart from a hardfork to get their transactions included or save the chain. In the operator walkaway scenario, new sequencers could stake and join the set permissionlessly. ## Risk summary ### Funds can be stolen if 1. a malicious or vulnerable wrapped token implementation is configured for newly bridged assets, 2. a contract receives a malicious code upgrade. There is no delay on code upgrades, (CRITICAL) 3. bridge validators sign fraudulent messages that release more assets on Ethereum than were burned or locked on Gnosis, 4. the Gnosis validator set finalizes an invalid chain state and the bridge validators sign messages derived from it. ### Funds can be frozen if 5. transaction data is unavailable and bridge validators cannot reconstruct or sign the messages needed to exit, 6. bridge validators stop signing messages or Gnosis Chain stops finalizing blocks. ### Users can be censored if 7. at least half of the active stake censors them, or if current validators coordinate blanket censorship and the chain requires social recovery. ## Risk analysis ### Sequencer failure Decentralized Sequencer Set (sentiment: good) Users can permissionlessly become a sequencer (validator) by staking a minimum of 1 GNO to join the queue and wait to obtain block production rights. There is no specific censorship resistance mechanism against selective censorship by parts of the active validator set nor a way to force transactions from Ethereum L1. ### State validation None (sentiment: bad) Ethereum contracts do not validate Gnosis Chain state transitions. Bridge messages are accepted after threshold signatures from dedicated bridge validators. ### Data availability PoS network (sentiment: bad) Data is made available by an external proof of stake network of validators. Since there is no DA bridge, Ethereum cannot verify whether any data was made available on Gnosis Chain or whether incoming messages originate from state that was attested to by the PoS network. ### Exit window None (sentiment: bad) There is no window for users to exit in case of an unwanted upgrade since contracts are instantly upgradable. ### Proposer failure Cannot withdraw (sentiment: bad) The Gnosis Chain bridge is not validated by its PoS validator set. Withdrawals through the xDAI bridge require 4/7 validator signatures, while AMB and Omnibridge withdrawals require 4/7 validator signatures. The bridge validators can freeze bridge transactions and/or steal bridge-locked and minted assets. Transactions on Gnosis Chain itself cannot be forced from Ethereum. If the chain has a liveness failure due to blanket censorship or operator walkaway the only recourse are new validators joining the open validator set. ## Data availability ### Transaction data is stored on Gnosis Chain Gnosis Chain transaction data is published to Gnosis Chain and propagated by its validator and node network. The Ethereum bridge contracts do not verify data availability and only process bridge messages after bridge-validator signatures are submitted. **Risks** - Funds can be frozen if transaction data is unavailable and bridge validators cannot reconstruct or sign the messages needed to exit. **References** - [Gnosis specifications](https://docs.gnosischain.com/about/specs/) ## State validation ### No state validation Gnosis Chain is an independent proof-of-stake chain. Ethereum contracts do not check whether Gnosis state transitions are valid. Cross-chain messages are executed when the relevant bridge contract receives enough validator signatures: 4/7 for the xDAI bridge and 4/7 for AMB and Omnibridge. **Risks** - Funds can be stolen if bridge validators sign fraudulent messages that release more assets on Ethereum than were burned or locked on Gnosis. - Funds can be stolen if the Gnosis validator set finalizes an invalid chain state and the bridge validators sign messages derived from it. - Funds can be frozen if bridge validators stop signing messages or Gnosis Chain stops finalizing blocks. **References** - [xDAI Bridge documentation](https://docs.gnosischain.com/bridges/About%20Token%20Bridges/xdai-bridge) - [Omnibridge documentation](https://docs.gnosischain.com/bridges/About%20Token%20Bridges/omnibridge) ## Upgrades & Governance ## Updates Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/gnosis#updates). ## Sequencing ### Transactions are ordered by Gnosis Chain validators Gnosis Chain uses a permissionless proof-of-stake validator set with stake-weighted proposer rotation and a 5 second slot time. The Ethereum-like committee-free block production architecture combined with the short block time lead to fast theoretical inclusion times, even with high rates of censorship. In contrast to Ethereum, blocks on Gnosis chain are usually built *locally*, meaning that validators do not delegate block production to specialised builders. There is no public information on the decentralisation of the Gnosis validator set. #### Censorship resistance Gnosis Chain does not have dedicated censorship resistance gadgets, but the sequencer set is open and there are no committees that can block inclusion. ##### Selective censorship Even with high percentages of stake censoring, users have very fast inclusion times. There are also initial tests of an out-of-protocol solution for encrypting transactions in the mempool (Shutterized Gnosis Chain). ##### Blanket censorship There is no way to circumvent the validator set from Ethereum in a case of active censorship by all (or a majority of) validators. ##### Walkaway Since the validator set is open, new validators can join it in case validators passively stop block production. If all validators stop at the same time, a social recovery and hard fork would be necessary. **Risks** - Users can be censored if at least half of the active stake censors them, or if current validators coordinate blanket censorship and the chain requires social recovery. **References** - [Gnosis Chain specifications](https://docs.gnosischain.com/about/specs/) ## Other considerations ### Encrypted mempool (Shutter Network Beta) A subset of Gnosis Chain validators is currently running a modified node version that supports threshold-encrypted transaction payloads. This allows to 'encrypt the mempool' and protect against malicious MEV and censorship with significant caveats. To encrypt the transaction, users have to either use custom wallets or a trusted encrypting rpc proxy. Decryption is handled by participating validators sharing their decryption key shares at the target block, allowing the proposer to decrypt the transaction and include and execute (or censor) it. **References** - [Shutterized Gnosis Chain Beta Release](https://blog.shutter.network/shutterized-gnosis-chain-is-now-live/) - [Gnosis Docs: Shutterized Gnosis Chain](https://docs.gnosischain.com/shutterized-gc/) ### Destination tokens can be upgradeable Omnibridge uses token factories to deploy wrapped ERC20 representations for assets native to the other chain. The token factory owner can change the implementation used for newly deployed wrapped tokens. **Risks** - Funds can be stolen if a malicious or vulnerable wrapped token implementation is configured for newly bridged assets. **References** - [Omnibridge documentation](https://docs.gnosischain.com/bridges/About%20Token%20Bridges/omnibridge) ## Permissions ### Gnosis Chain #### Actors ##### Gnosis Multisig (Gnosis) Addresses: [0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd](https://gnosis.blockscout.com/address/0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd) A Multisig with 8/15 threshold. * Can upgrade **with no delay** * SBCDepositContract * HomeAMB * HomeAMB Validators * HomeOmnibridge * Can interact with SBCDepositContract * pause or unpause beacon chain deposits, execute system withdrawals manually if required, and recover accidentally sent non-stake tokens * Can interact with HomeOmnibridge Fee Manager * change Omnibridge fee schedules and the list of addresses that receive distributed bridge fees * Can interact with HomeOmnibridge Gas Limit Manager * change default, selector-specific, and token-specific gas limits used by HomeOmnibridge cross-chain messages * Can interact with HomeAMB * change validator and Hashi-based message verification settings, chain identifiers, gas parameters, and reentrancy policy for AMB messages * claim tokens accidentally held by the AMB bridge contract * Can interact with HomeAMB Validators * change the threshold and manage signers * Can interact with HomeOmnibridge Forwarding Rules Manager * change which Omnibridge transfers are routed through the oracle-driven lane or forced into the manual lane * Can interact with HomeOmnibridge TokenFactory * change the token implementation used for newly deployed Omnibridge wrapped tokens * Can interact with HomeOmnibridge * change the counterpart mediator, the AMB bridge endpoint, token factory, fee, gas-limit, and forwarding-rules managers, token pairs, and per-token bridge limits for Omnibridge transfers * fix bridge imbalances and claim unsupported tokens or assets held by the mediator or bridged token contracts ##### HomeAMB Validators Addresses: [0xA280feD8D7CaD9a76C8b50cA5c33c2534fFa5008](https://gnosis.blockscout.com/address/0xA280feD8D7CaD9a76C8b50cA5c33c2534fFa5008) A Multisig with 4/7 threshold. Validator set contract used by the bridge to require threshold signatures before cross-chain messages can be executed. * Can interact with GNO token * mint the token, update the designated bridge contract, recover unsupported tokens accidentally sent to the contract and set the `mintingFinished` state, which disallows further minting [via: HomeAMB → HomeOmnibridge] ##### Hashi Multisig (Gnosis) Addresses: [0xEF138856d0581641A57245Ee5CFfc9ceaA059623](https://gnosis.blockscout.com/address/0xEF138856d0581641A57245Ee5CFfc9ceaA059623) A Multisig with 2/3 threshold. Member of Gnosis Multisig (Gnosis). ##### EOA 1 Addresses: [0x0000000000000000000000000000000000000000](https://gnosis.blockscout.com/address/0x0000000000000000000000000000000000000000) * Can upgrade **with no delay** * GNO token ##### 7 EOAs Addresses: [0x258667E543C913264388B33328337257aF208a8f](https://gnosis.blockscout.com/address/0x258667E543C913264388B33328337257aF208a8f) (Safe EOA 2), [0x4A07b8AE561CC558eDD3f1836365AB8e02C52dE2](https://gnosis.blockscout.com/address/0x4A07b8AE561CC558eDD3f1836365AB8e02C52dE2) (EOA 2), [0x5524b7a3e2Dc024f4C9c2Ecd7FE003ee316ac624](https://gnosis.blockscout.com/address/0x5524b7a3e2Dc024f4C9c2Ecd7FE003ee316ac624) (EOA 3), [0x59D3C2829900Ae20D02Ca547082b09FD27380eA6](https://gnosis.blockscout.com/address/0x59D3C2829900Ae20D02Ca547082b09FD27380eA6) (EOA 4), [0xAD93BffBC65002cC75AD2d5770d3AAfFdefd8D55](https://gnosis.blockscout.com/address/0xAD93BffBC65002cC75AD2d5770d3AAfFdefd8D55) (EOA 5), [0xb54B5572F3C4f70fF3cc8F67C19C8cddb838FBaA](https://gnosis.blockscout.com/address/0xb54B5572F3C4f70fF3cc8F67C19C8cddb838FBaA) (EOA 6), [0xE9fc29AE64c2923FeBb615cB016b77aF9492EBcE](https://gnosis.blockscout.com/address/0xE9fc29AE64c2923FeBb615cB016b77aF9492EBcE) (EOA 7) Member of HomeAMB Validators. * Can interact with HomeAMB Validators * can sign bridge messages between Ethereum and Gnosis ### Ethereum #### Actors ##### Gnosis Bridge Multisig (Ethereum) Addresses: [0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6](https://etherscan.io/address/0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6) A Multisig with 8/15 threshold. * Can upgrade **with no delay** * XDaiForeignBridge * ForeignAMB * ForeignOmnibridge * BridgeRouter [via: BridgeRouter ProxyAdmin] * XDai Bridge Validators * AMB Validators * Can interact with XDaiForeignBridge * change bridge limits, gas and confirmation parameters, and the optional Hashi validation manager for the xDAI bridge * claim tokens held by the bridge and recover legacy transfers that remain locked in the contract * Can interact with ForeignAMB * change validator and Hashi-based message verification settings, chain identifiers, gas parameters, and reentrancy policy for AMB messages * claim tokens accidentally held by the AMB bridge contract * Can interact with ForeignOmnibridge TokenFactory * change the token implementation used for newly deployed Omnibridge wrapped tokens * Can interact with ForeignOmnibridge * change the counterpart mediator, the AMB bridge endpoint, the wrapped token factory, gas settings, token pairs, and per-token bridge limits for Omnibridge transfers * fix bridge imbalances and claim unsupported tokens or assets held by the mediator or bridged token contracts * Can interact with BridgeRouter * change the DAI and USDS bridge routes and recover ETH or ERC20 tokens locked in the router * Can interact with WETHOmnibridgeRouter * claim ETH or ERC20 tokens that remain stuck in the WETH Omnibridge router * Can interact with XDai Bridge Validators * change the threshold and manage signers * Can interact with AMB Validators * change the threshold and manage signers ##### Hashi Multisig (Ethereum) Addresses: [0x4b5F5231e2F08Ad49d79Ce5672A8339a63Cfbd43](https://etherscan.io/address/0x4b5F5231e2F08Ad49d79Ce5672A8339a63Cfbd43) A Multisig with 2/3 threshold. Member of Gnosis Bridge Multisig (Ethereum). ##### XDai Bridge Validators Addresses: [0xe1579dEbdD2DF16Ebdb9db8694391fa74EeA201E](https://etherscan.io/address/0xe1579dEbdD2DF16Ebdb9db8694391fa74EeA201E) A Multisig with 4/7 threshold. Validator set contract used by the bridge to require threshold signatures before cross-chain messages can be executed. ##### AMB Validators Addresses: [0xed84a648b3c51432ad0fD1C2cD2C45677E9d4064](https://etherscan.io/address/0xed84a648b3c51432ad0fD1C2cD2C45677E9d4064) A Multisig with 4/7 threshold. Validator set contract used by the bridge to require threshold signatures before cross-chain messages can be executed. ##### 5 EOAs Addresses: [0x1312E98995bbCc30fc63Db3cef807e20CDd33dca](https://etherscan.io/address/0x1312E98995bbCc30fc63Db3cef807e20CDd33dca) (Safe EOA 1), [0x2245bFAD58a6cD50e9e413084d4091C497281911](https://etherscan.io/address/0x2245bFAD58a6cD50e9e413084d4091C497281911) (EOA 8), [0x82b00cA9D162859f645B51967746E55bb6498DfC](https://etherscan.io/address/0x82b00cA9D162859f645B51967746E55bb6498DfC) (EOA 12), [0xA2746D5eE860a6A9cbb79C34533313144d467CA8](https://etherscan.io/address/0xA2746D5eE860a6A9cbb79C34533313144d467CA8) (EOA 13), [0xC9f0d7e76E7970590e217c57Af5d2B7d07A62c13](https://etherscan.io/address/0xC9f0d7e76E7970590e217c57Af5d2B7d07A62c13) (EOA 16) Member of XDai Bridge Validators. * Can interact with XDai Bridge Validators * can sign bridge messages between Ethereum and Gnosis ##### 5 EOAs Addresses: [0x258667E543C913264388B33328337257aF208a8f](https://etherscan.io/address/0x258667E543C913264388B33328337257aF208a8f) (Safe EOA 2), [0x4A07b8AE561CC558eDD3f1836365AB8e02C52dE2](https://etherscan.io/address/0x4A07b8AE561CC558eDD3f1836365AB8e02C52dE2) (EOA 9), [0x5524b7a3e2Dc024f4C9c2Ecd7FE003ee316ac624](https://etherscan.io/address/0x5524b7a3e2Dc024f4C9c2Ecd7FE003ee316ac624) (EOA 10), [0xAD93BffBC65002cC75AD2d5770d3AAfFdefd8D55](https://etherscan.io/address/0xAD93BffBC65002cC75AD2d5770d3AAfFdefd8D55) (EOA 14), [0xE9fc29AE64c2923FeBb615cB016b77aF9492EBcE](https://etherscan.io/address/0xE9fc29AE64c2923FeBb615cB016b77aF9492EBcE) (EOA 17) Member of AMB Validators. * Can interact with AMB Validators * can sign bridge messages between Ethereum and Gnosis ##### 2 EOAs Addresses: [0x59D3C2829900Ae20D02Ca547082b09FD27380eA6](https://etherscan.io/address/0x59D3C2829900Ae20D02Ca547082b09FD27380eA6) (EOA 11), [0xb54B5572F3C4f70fF3cc8F67C19C8cddb838FBaA](https://etherscan.io/address/0xb54B5572F3C4f70fF3cc8F67C19C8cddb838FBaA) (EOA 15) Member of XDai Bridge Validators, AMB Validators. * Can interact with XDai Bridge Validators * can sign bridge messages between Ethereum and Gnosis * Can interact with AMB Validators * can sign bridge messages between Ethereum and Gnosis ## Smart contracts ### Gnosis Chain #### SBCDepositContract Addresses: [0x0B98057eA310F4d31F2a452B414647007d1645d9](https://gnosis.blockscout.com/address/0x0B98057eA310F4d31F2a452B414647007d1645d9#code), [0x49dE1aced385334F1a66d86Db363264eB5b6A708](https://gnosis.blockscout.com/address/0x49dE1aced385334F1a66d86Db363264eB5b6A708#code) (Implementation (Upgradable)), [0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd](https://gnosis.blockscout.com/address/0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd#code) (Admin) Gnosis Beacon Chain deposit contract escrowing all validator-staked GNO. Differs from the similar contract on Ethereum by being upgradable, allowing critical permissioned function access and using the non-gastoken GNO as its staking token. * Roles: * **admin**: Gnosis Multisig (Gnosis) Can be upgraded by: Gnosis Multisig (Gnosis) with no delay #### GNO token Addresses: [0x9C58BAcC331c9aa871AFD802DB6379a98e80CEdb](https://gnosis.blockscout.com/address/0x9C58BAcC331c9aa871AFD802DB6379a98e80CEdb#code), [0xf8D1677c8a0c961938bf2f9aDc3F3CFDA759A9d9](https://gnosis.blockscout.com/address/0xf8D1677c8a0c961938bf2f9aDc3F3CFDA759A9d9#code) (Implementation (Upgradable)), [0x0000000000000000000000000000000000000000](https://gnosis.blockscout.com/address/0x0000000000000000000000000000000000000000#code) (Admin) Immutable GNO token smart contract contract, administered from the Ethereum side by the Gnosis Bridge contract. * Roles: * **admin**: EOA 1 * **owner**: HomeOmnibridge; ultimately HomeAMB Validators Can be upgraded by: EOA 1 with no delay #### HomeOmnibridge Fee Manager Addresses: [0x5dbC897aEf6B18394D845A922BF107FA98E3AC55](https://gnosis.blockscout.com/address/0x5dbC897aEf6B18394D845A922BF107FA98E3AC55#code) Fee manager used by HomeOmnibridge to calculate and distribute bridge fees to a configured reward address list. * Roles: * **owner**: Gnosis Multisig (Gnosis) #### HomeOmnibridge Gas Limit Manager Addresses: [0x68A3674028a785A8BCE19bA81B9ab7c9942BA3ED](https://gnosis.blockscout.com/address/0x68A3674028a785A8BCE19bA81B9ab7c9942BA3ED#code) Module used by HomeOmnibridge to choose default, selector-specific, and token-specific gas limits for cross-chain Omnibridge message execution. * Roles: * **owner**: Gnosis Multisig (Gnosis) #### HomeAMB Addresses: [0x75Df5AF045d91108662D8080fD1FEFAd6aA0bb59](https://gnosis.blockscout.com/address/0x75Df5AF045d91108662D8080fD1FEFAd6aA0bb59#code), [0xA033535983d1aBcc2648af730EDCb198909903D7](https://gnosis.blockscout.com/address/0xA033535983d1aBcc2648af730EDCb198909903D7#code) (Implementation (Upgradable)), [0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd](https://gnosis.blockscout.com/address/0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd#code) (Admin) Gnosis-side Arbitrary Message Bridge endpoint that verifies validator signatures before relaying cross-chain calls to Ethereum. Hashi can be enabled as an additional verification layer. * Roles: * **admin**: Gnosis Multisig (Gnosis) * **owner**: Gnosis Multisig (Gnosis) * **upgradeabilityOwner**: Gnosis Multisig (Gnosis) * **validatorContract**: HomeAMB Validators Can be upgraded by: Gnosis Multisig (Gnosis) with no delay #### HomeOmnibridge Forwarding Rules Manager Addresses: [0xd4D8c07097F9b87EcC4C1a838C4b71DBebcd2286](https://gnosis.blockscout.com/address/0xd4D8c07097F9b87EcC4C1a838C4b71DBebcd2286#code) Module used by HomeOmnibridge to decide whether specific tokens, senders, or receivers must use the oracle-driven lane or the manual lane for bridge requests. * Roles: * **owner**: Gnosis Multisig (Gnosis) #### HomeOmnibridge TokenFactory Addresses: [0xEAAE83ac10f975a6456f4C4E48c45Ea2d8e1b5d2](https://gnosis.blockscout.com/address/0xEAAE83ac10f975a6456f4C4E48c45Ea2d8e1b5d2#code) Factory used by Omnibridge to deploy wrapped tokens representing assets native to the other chain. * Roles: * **owner**: Gnosis Multisig (Gnosis) #### HomeOmnibridge Addresses: [0xf6A78083ca3e2a662D6dd1703c939c8aCE2e268d](https://gnosis.blockscout.com/address/0xf6A78083ca3e2a662D6dd1703c939c8aCE2e268d#code), [0x2dbdCC6CAd1a5a11FD6337244407bC06162aAf92](https://gnosis.blockscout.com/address/0x2dbdCC6CAd1a5a11FD6337244407bC06162aAf92#code) (Implementation (Upgradable)), [0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd](https://gnosis.blockscout.com/address/0x7a48Dac683DA91e4faa5aB13D91AB5fd170875bd#code) (Admin) Gnosis-side Omnibridge mediator used for arbitrary token transfers between Gnosis and Ethereum via the AMB bridge. * Roles: * **admin**: Gnosis Multisig (Gnosis) * **bridgeContract**: HomeAMB * **owner**: Gnosis Multisig (Gnosis) * **upgradeabilityOwner**: Gnosis Multisig (Gnosis) Can be upgraded by: Gnosis Multisig (Gnosis) with no delay ### Ethereum #### XDaiForeignBridge Addresses: [0x4aa42145Aa6Ebf72e164C9bBC74fbD3788045016](https://etherscan.io/address/0x4aa42145Aa6Ebf72e164C9bBC74fbD3788045016#code), [0x257bDD093Cab1Bd39eBF837dCB60f33d031d7d49](https://etherscan.io/address/0x257bDD093Cab1Bd39eBF837dCB60f33d031d7d49#code) (Implementation (Upgradable)), [0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6](https://etherscan.io/address/0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6#code) (Admin) Ethereum-side ERC20-to-native bridge used to lock DAI or USDS on Ethereum and authorize xDAI minting on Gnosis. Message execution is validated by a dedicated validator set and can additionally be gated by Hashi. * Roles: * **admin**: Gnosis Bridge Multisig (Ethereum) * **owner**: Gnosis Bridge Multisig (Ethereum) * **upgradeabilityOwner**: Gnosis Bridge Multisig (Ethereum) Can be upgraded by: Gnosis Bridge Multisig (Ethereum) with no delay #### ForeignAMB Addresses: [0x4C36d2919e407f0Cc2Ee3c993ccF8ac26d9CE64e](https://etherscan.io/address/0x4C36d2919e407f0Cc2Ee3c993ccF8ac26d9CE64e#code), [0x098f51bdfb5D6d319DD4FDf06b64773d25bD1316](https://etherscan.io/address/0x098f51bdfb5D6d319DD4FDf06b64773d25bD1316#code) (Implementation (Upgradable)), [0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6](https://etherscan.io/address/0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6#code) (Admin) Ethereum-side Arbitrary Message Bridge endpoint that verifies validator signatures before relaying cross-chain calls to Gnosis. Hashi can be enabled as an additional verification layer. * Roles: * **admin**: Gnosis Bridge Multisig (Ethereum) * **owner**: Gnosis Bridge Multisig (Ethereum) * **upgradeabilityOwner**: Gnosis Bridge Multisig (Ethereum) Can be upgraded by: Gnosis Bridge Multisig (Ethereum) with no delay #### ForeignOmnibridge TokenFactory Addresses: [0x71d5ba4e37de72415F685490B684538Aae8f0424](https://etherscan.io/address/0x71d5ba4e37de72415F685490B684538Aae8f0424#code) Factory used by Omnibridge to deploy wrapped tokens representing assets native to the other chain. * Roles: * **owner**: Gnosis Bridge Multisig (Ethereum) #### ForeignOmnibridge Addresses: [0x88ad09518695c6c3712AC10a214bE5109a655671](https://etherscan.io/address/0x88ad09518695c6c3712AC10a214bE5109a655671#code), [0x8eB3b7D8498a6716904577b2579e1c313d48E347](https://etherscan.io/address/0x8eB3b7D8498a6716904577b2579e1c313d48E347#code) (Implementation (Upgradable)), [0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6](https://etherscan.io/address/0x42F38ec5A75acCEc50054671233dfAC9C0E7A3F6#code) (Admin) Ethereum-side Omnibridge mediator used for arbitrary token transfers between Ethereum and Gnosis via the AMB bridge. * Roles: * **admin**: Gnosis Bridge Multisig (Ethereum) * **owner**: Gnosis Bridge Multisig (Ethereum) * **upgradeabilityOwner**: Gnosis Bridge Multisig (Ethereum) Can be upgraded by: Gnosis Bridge Multisig (Ethereum) with no delay #### BridgeRouter Addresses: [0x9a873656c19Efecbfb4f9FAb5B7acdeAb466a0B0](https://etherscan.io/address/0x9a873656c19Efecbfb4f9FAb5B7acdeAb466a0B0#code), [0x74899961224538E423eFfD1A0Ff3346adf3F4C56](https://etherscan.io/address/0x74899961224538E423eFfD1A0Ff3346adf3F4C56#code) (Implementation (Upgradable)), [0xD7e65A32bEd4ce8cc57Ec188F2bBb8016dc4b1cd](https://etherscan.io/address/0xD7e65A32bEd4ce8cc57Ec188F2bBb8016dc4b1cd#code) (Admin) Entry router for bridging between Ethereum and Gnosis. It routes DAI and USDS through the legacy xDAI bridge, ETH through the WETH Omnibridge router, and other ERC20 tokens through Omnibridge. * Roles: * **admin**: BridgeRouter ProxyAdmin; ultimately Gnosis Bridge Multisig (Ethereum) * **owner**: Gnosis Bridge Multisig (Ethereum) Can be upgraded by: Gnosis Bridge Multisig (Ethereum) with no delay #### WETHOmnibridgeRouter Addresses: [0xa6439Ca0FCbA1d0F80df0bE6A17220feD9c9038a](https://etherscan.io/address/0xa6439Ca0FCbA1d0F80df0bE6A17220feD9c9038a#code) Router that wraps native ETH into WETH before sending it through Omnibridge and unwraps it again on Gnosis when bridge messages are executed. * Roles: * **owner**: Gnosis Bridge Multisig (Ethereum) #### BridgeRouter ProxyAdmin Addresses: [0xD7e65A32bEd4ce8cc57Ec188F2bBb8016dc4b1cd](https://etherscan.io/address/0xD7e65A32bEd4ce8cc57Ec188F2bBb8016dc4b1cd#code) * Roles: * **owner**: Gnosis Bridge Multisig (Ethereum) The current deployment carries some associated risks: - Funds can be stolen if a contract receives a malicious code upgrade. There is no delay on code upgrades (CRITICAL).