# Katana Markdown version of https://l2beat.com/layer2s/projects/katana ## Summary **Warning:** There are impactful changes and part of the information might be outdated. - Total Value Secured: $61.79 M (-2.78% compared to seven days ago; canonically bridged $44.17 M, natively minted $17.27 M, externally bridged $344.06 K; 51.1% with additional trust assumptions compared to the tokens involved and the Stage assigned to the project's canonical messaging bridge) - Past day UOPS: 0.59 (-11.4% compared to seven days ago) - Stage: Stage 0 - Type: ZK Rollup - Purpose: Universal - Host chain: Ethereum - Chain ID: 747474 ### Risks - Sequencer failure: Self sequence (sentiment: good) - State validation: Validity proofs (ST, SN) (sentiment: good) - Data availability: Onchain (sentiment: good) - Exit window: None (sentiment: bad) - Proposer failure: Cannot withdraw (sentiment: bad) ### About Katana is a Layer 2 specializing on DeFi. Its unique architecture combines an OP stack base with Agglayer shared bridge interoperability and OP-Succinct SP1 validity proofs. ## Value Secured Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#tvs). - [TVS chart (JSON)](https://l2beat.com/api/scaling/tvs/katana) - [TVS breakdown by token (JSON)](https://l2beat.com/api/scaling/tvs/katana/breakdown) ## Volume and flows Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#interop-flows). ## Activity Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#activity). - [Activity chart (JSON)](https://l2beat.com/api/scaling/activity/katana) ## Onchain costs Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#onchain-costs). ## Data posted Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#data-posted). ## Liveness Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#liveness). ## Milestones & Incidents - 2025-07-01: [Katana Launch](https://x.com/katana/status/1939808602727813253). Katana is live on mainnet, integrated with Agglayer. ## Risk summary ### Funds can be stolen if 1. the contracts or their dependencies (e.g. AggLayerGateway) receive a malicious code upgrade. There is no delay on upgrades, 2. the state transition validity proof cryptography is broken or implemented incorrectly, 3. A malicious state transition is finalized by activating the permissioned optimistic mode, 4. the proposer routes proof verification through a malicious or faulty verifier by specifying an unsafe route id, 5. the pessimistic proof cryptography is broken or implemented incorrectly. ### Funds can be lost if 6. the accounting proof system for the bridge (pessimistic proofs, SP1) is implemented incorrectly. ### Funds can be frozen if 7. the permissioned proposer fails to publish state roots to the L1, 8. the AggLayerGateway is unable to route proof verification to a valid verifier. ## Risk analysis ### Sequencer failure Self sequence (sentiment: good) In the event of a sequencer failure, users can force transactions to be included in the project's chain by sending them to L1. There can be up to a 12h delay on this operation. ### State validation Validity proofs (ST, SN) (sentiment: good) STARKs and SNARKs are zero knowledge proofs that ensure state correctness. STARKs proofs are wrapped in SNARKs proofs for efficiency. SNARKs require a trusted setup. ### Data availability Onchain (sentiment: good) All of the data needed for proof construction is published on Ethereum L1. ### Exit window None (sentiment: bad) There is no window for users to exit in case of an unwanted upgrade since the Security Council can remove the delay on upgrades. ### Proposer failure Cannot withdraw (sentiment: bad) Only the whitelisted proposers can publish state roots on L1, so in the event of failure the withdrawals are frozen. ## Stage Katana is a Stage 0 ZK Rollup. **Warning:** The requirement for available node software is under review ### Stage 0 - [x] A complete and functional proof system is deployed. - [x] The project calls itself a rollup. - [x] State roots are posted to Ethereum L1. - [x] Inputs for the state transition function are posted to Ethereum L1. - [ ] (under review) A source-available node exists that can recreate the state from Ethereum L1 data. Please note that the L2BEAT team has not verified the validity of the node source code. ### Stage 1 - [ ] Principle: Compromising ≥75% of the Security Council should be the only way (other than bugs) for a rollup to indefinitely block an L2→L1 message (e.g. a withdrawal) or push an invalid L2→L1 message (e.g. an invalid withdrawal) with a <7d exit window. - [ ] Users' withdrawals can be censored by the permissioned operators. - [ ] Upgrades executed by actors with more centralized control than a Security Council provide less than 7d for users to exit if the permissioned operator is down or censoring. - [ ] The Security Council is not properly set up. - [x] The proof system meets the minimum trusted setup requirements defined in the L2BEAT [trusted setup assessment framework](https://forum.l2beat.com/t/the-trusted-setups-framework-for-zk-catalog/381). - [x] Prover source code is published. - [x] Onchain verifiers' smart contracts can be independently regenerated from the verifier source code. - [ ] Not all program sources are public or not all program hashes can be independently regenerated. ### Stage 2 - [ ] Fraud proof submission is open only to whitelisted actors. - [ ] Upgrades unrelated to onchain provable bugs provide less than 30d to exit. - [ ] The Security Council's actions are not confined to onchain provable bugs. ## Data availability ### All data required for proofs is published on chain All the data that is used to construct the system state is published on chain in the form of cheap blobs or calldata. This ensures that it will be available for enough time. **References** - [batchInbox - Etherscan address](https://etherscan.io/address/0x000d4411cdeb152378626B5C5E33fd5D6808939a) ## State validation ### Prover Architecture Katana uses the Agglayer CDK in CDK-opgeth-zkrollup configuration. This combines an OP-Succinct zk rollup base with Agglayer shared bridge interoperability. Both parts are verified in a single nested proof using the Succinct Sp1Verifier. This proof is called the pessimistic proof by Agglayer which contains 1) the bridge accounting proof proving only the secure accounting of the Agglayer shared bridge and can have 2) a reference to an 'aggchain proof', which can define additional programs to be proven. In the case of Katana, these are the op-succinct block range proofs as an aggregated proof proving the state transitions of the L2, resulting in a full validity proof of L2 execution and agglayer bridge accounting. **References** - [CDK-opgeth-zkrollup architecture](https://docs.agglayer.dev/cdk/cdk-opgeth/architecture/#cdk-opgeth-zkrollup-not-live-yet) ### Validity proofs Each update to the rollup state must be accompanied by a ZK proof that ensures that the new state was derived by correctly applying a series of valid user transactions to the previous state. These proofs are then verified on Ethereum by a smart contract. **Risks** - Funds can be stolen if the state transition validity proof cryptography is broken or implemented incorrectly. - Funds can be stolen if A malicious state transition is finalized by activating the permissioned optimistic mode. - Funds can be stolen if the proposer routes proof verification through a malicious or faulty verifier by specifying an unsafe route id. - Funds can be frozen if the AggLayerGateway is unable to route proof verification to a valid verifier. **References** - [Op-Succinct architecture](https://succinctlabs.github.io/op-succinct/architecture.html) ### Pessimistic Proofs The pessimistic proofs that are used to prove correct accounting in the Agglayer shared bridge (minimum security guarantee) are using the [SP1 zkVM by Succinct](https://github.com/succinctlabs/sp1). **Risks** - Funds can be stolen if the pessimistic proof cryptography is broken or implemented incorrectly. ## Upgrades & Governance The regular upgrade process for all system contracts (shared and L2-specific) starts at the PolygonAdminMultisig. For the shared contracts, they schedule a transaction that targets the ProxyAdmin via the Timelock, wait for 3d and then execute the upgrade. An upgrade of the Layer 2 specific rollup- or validium contract requires first adding a new rollupType through the Timelock and the AgglayerManager (defining the new implementation and verifier contracts). Now that the rollupType is created, either the local admin or the PolygonAdminMultisig can immediately upgrade the local system contracts to it. The PolygonSecurityCouncil can expedite the upgrade process by declaring an emergency state. This state pauses both the shared bridge and the AgglayerManager and allows for instant upgrades through the timelock. Accordingly, instant upgrades for all system contracts are possible with the cooperation of the SecurityCouncil. The emergency state has been activated 1 time(s) since inception. Furthermore, the PolygonAdminMultisig is permissioned to manage the shared trusted aggregator (proposer and prover) for all participating Layer 2s, deactivate the emergency state, obsolete rollupTypes and manage operational parameters and fees in the AgglayerManager directly. The local admin of a specific Layer 2 can manage their chain by choosing the trusted sequencer, manage forced batches and set the data availability config. Creating new Layer 2s (of existing rollupType) is outsourced to the PolygonCreateRollupMultisig but can also be done by the PolygonAdminMultisig. Finally, it can manage SP1 verification keys for pessimistic proofs and aggchain proofs, which defines the affected chains' state validation. Custom non-shared bridge escrows have their custom upgrade admins listed in the permissions section. ## Updates Shown as an interactive chart or widget on [the HTML page](https://l2beat.com/layer2s/projects/katana#updates). ## Operator ### The system has a centralized operator Only a trusted sequencer is allowed to submit transaction batches. A mechanism for users to submit their own batches is currently disabled. Only a trusted proposer can propose and prove new state roots. **Risks** - Funds can be frozen if the permissioned proposer fails to publish state roots to the L1. **References** - [batcherHash - Etherscan address](https://etherscan.io/address/0xb6e1f8B589A14B79DDD3aD7F0589AB548c70C174#readProxyContract#F13) ### Users can force any transaction Because the state of the system is based on transactions submitted on the underlying host chain and anyone can submit their transactions there it allows the users to circumvent censorship by interacting with the smart contract on the host chain directly. The self-sequencing delay is configured offchain and the node source and config are unverified. **References** - [depositTransaction() in OptimismPortal2 - Etherscan source code](https://etherscan.io/address/0x3160738db14B27EAe2D0d1b622259010308f4C38#code#F1#L667) ## Withdrawals ### Regular messaging The user initiates L2->L1 messages by submitting a regular transaction on this chain. When the block containing that transaction is settled, the message becomes available for processing on L1. ZK proofs are required to settle blocks. ## Other considerations ### Shared bridge and Pessimistic Proofs Polygon Agglayer uses a shared bridge escrow for Rollups, Validiums and external chains that opt in to participate in interoperability. Each participating chain needs to provide zk proofs to access any assets in the shared bridge. In addition to the full execution proofs that are used for the state validation of Rollups and Validiums, accounting proofs over the bridges state (Polygon calls them 'Pessimistic Proofs') are used by external chains ('cdk-sovereign' and aggchains). Using the SP1 zkVM by Succinct, projects without a full proof system on Ethereum or custom proof systems are able to share the bridge with the zkEVM Agglayer projects. **Risks** - Funds can be lost if the accounting proof system for the bridge (pessimistic proofs, SP1) is implemented incorrectly. **References** - [Pessimistic Proof - Polygon Knowledge Layer](https://docs.agglayer.dev/agglayer/core-concepts/pessimistic-proof/) - [Etherscan: AgglayerManager.sol - verifyPessimisticTrustedAggregator() function](https://etherscan.io/address/0x15cAF18dEd768e3620E0f656221Bf6B400ad2618#code#F1#L1300) ## Permissions ### Ethereum #### Actors ##### PolygonAdminMultisig Addresses: [0x242daE44F5d8fb54B198D03a94dA45B5a4413e21](https://etherscan.io/address/0x242daE44F5d8fb54B198D03a94dA45B5a4413e21) A Multisig with 5/9 threshold. * Can upgrade **with 3d delay** * AgglayerGateway [via: Timelock with 3d delay (no delay if in emergency state) → SharedProxyAdmin] * AgglayerBridge [via: Timelock with 3d delay (no delay if in emergency state) → SharedProxyAdmin] * AgglayerManager [via: Timelock with 3d delay (no delay if in emergency state) → SharedProxyAdmin] * AgglayerGER [via: Timelock with 3d delay (no delay if in emergency state) → SharedProxyAdmin] * Can interact with AgglayerGateway * add new routes from proof selector to verifier / pessimisticVkey for pessimistic proofs **with 3d delay** [via: Timelock with 3d delay (no delay if in emergency state)] * add or update default aggchain verification keys (aggchainVkey) for any given selectors * change the aggchainSigners and threshold (a multisig used for permissioned state transitions) * freeze routes from proof selector to verifier / pessimisticVkey for pessimistic proofs * Can interact with AgglayerBridge * upgrade the implementation of wrapped tokens deployed by the bridge **with 3d delay** [via: Timelock with 3d delay (no delay if in emergency state)] * Can interact with AgglayerManager * deploy new projects that use predefined rollup types (implementations) and connect them or other Agglayer chains to the PolygonRollupManager * manage all access control roles, add new rollup types (which are implementation contracts that can then be upgraded to by connected projects), update any connected projects to new rollup types, migrate to pessimistic proofs and rollback batches, connect existing rollups to the PolygonRollupManager **with 3d delay** [via: Timelock with 3d delay (no delay if in emergency state)] * manage parameters like fees for all connected projects, set the trusted aggregator, stop the emergency state, update projects and obsolete rollup types * Can interact with Timelock * propose, cancel and execute transactions in the timelock, manage all access control roles and change the minimum delay **with 6d delay or with 3d delay** [via: Timelock with 3d delay (no delay if in emergency state) with 3d delay (no delay if in emergency state) - or - acting directly with 3d delay (no delay if in emergency state)] ##### Polygon Multisig 2 Addresses: [0xd0673F989bc3BA9314d0AAF28BfC84e99B7898CC](https://etherscan.io/address/0xd0673F989bc3BA9314d0AAF28BfC84e99B7898CC) A Multisig with 3/5 threshold. Member of Katana vaultBridge Multisig 1, Katana vaultBridge Multisig 2, Katana vaultBridge Multisig 3. * Can upgrade **with no delay** * L1ERC721Bridge [via: ProxyAdmin] * L1CrossDomainMessenger [via: ProxyAdmin] * OptimismPortal2 [via: ProxyAdmin] * SuperchainConfig [via: ProxyAdmin] * L1StandardBridge [via: ProxyAdmin] * DelayedWETH [via: ProxyAdmin] * OptimismMintableERC20Factory [via: ProxyAdmin] * AnchorStateRegistry [via: ProxyAdmin] * SystemConfig [via: ProxyAdmin] * DisputeGameFactory [via: ProxyAdmin] * Can interact with AggchainFEP * change verification keys (aggregationVkey, rangeVkeyCommitment, aggchainVkey) and the rollupConfigHash, manage multisig signers for permissioned state transitions and change critical configs for state validation * toggle the 'optimisticMode' * Can interact with SystemConfig * it can update the preconfer address, the batch submitter (Sequencer) address and the gas configuration of the system * Can interact with DisputeGameFactory * set the dispute game implementation and initial bond for any game type * Can interact with AddressManager * set and change address mappings [via: ProxyAdmin] ##### AgglayerManager Addresses: [0x5132A183E9F3CB7C848b0AAC5Ae0c4f0491B7aB2](https://etherscan.io/address/0x5132A183E9F3CB7C848b0AAC5Ae0c4f0491B7aB2) The central shared managing contract for Polygon Agglayer chains. This contract coordinates chain deployments and proof validation. All connected Layer 2s can be globally paused by activating the 'Emergency State'. This can be done by the PolygonSecurityCouncil or by anyone after 1 week of inactive verifiers. * Can upgrade **with no delay** * AggchainFEP ##### Katana Foundation Engineering/Security Multisig Addresses: [0x4e981bAe8E3cd06Ca911ffFE5504B2653ac1C38a](https://etherscan.io/address/0x4e981bAe8E3cd06Ca911ffFE5504B2653ac1C38a) A Multisig with 2/5 threshold. * Can interact with SuperchainConfig * pause the OptimismPortal and L1CrossDomainMessenger of Katana (pauses expire automatically after the configured pause expiry) ##### PolygonSecurityCouncil Addresses: [0x37c58Dfa7BF0A165C5AAEdDf3e2EdB475ac6Dcb6](https://etherscan.io/address/0x37c58Dfa7BF0A165C5AAEdDf3e2EdB475ac6Dcb6) A Multisig with 6/8 threshold. * Can interact with AgglayerManager * activate the emergency state in the PolygonRollupManager and in the shared bridge immediately, effectively pausing all projects connected to them and making system contracts instantly upgradable ##### PolygonCreateRollupMultisig Addresses: [0xC74eFc7fdb3BeC9c6930E91FFDF761b160dF79dB](https://etherscan.io/address/0xC74eFc7fdb3BeC9c6930E91FFDF761b160dF79dB) A Multisig with 3/5 threshold. * Can interact with AgglayerManager * deploy new projects that use predefined rollup types (implementations) and connect them or other Agglayer chains to the PolygonRollupManager ##### Katana vaultBridge Multisig 1 Addresses: [0x2De242e27386e224E5fbF110EA8406d5B70740ec](https://etherscan.io/address/0x2De242e27386e224E5fbF110EA8406d5B70740ec) A Multisig with 2/3 threshold. * Can upgrade **with no delay** * vbWBTC [via: ProxyAdmin] * vbETH [via: ProxyAdmin] * vbUSDT [via: ProxyAdmin] ##### Polygon Labs Engineering/Security Multisig Addresses: [0x9d851f8b8751c5FbC09b9E74E6e68E9950949052](https://etherscan.io/address/0x9d851f8b8751c5FbC09b9E74E6e68E9950949052) A Multisig with 2/7 threshold. Member of Katana vaultBridge Multisig 1, Katana vaultBridge Multisig 2, Katana vaultBridge Multisig 3. * Can upgrade **with no delay** * MigrationManager [via: ProxyAdmin] ##### Katana vaultBridge Multisig 2 Addresses: [0xA8C31B2edd84c654d06d626383f4154D1E40C5Ff](https://etherscan.io/address/0xA8C31B2edd84c654d06d626383f4154D1E40C5Ff) A Multisig with 2/3 threshold. * Can upgrade **with no delay** * vbUSDS [via: ProxyAdmin] ##### Katana vaultBridge Multisig 3 Addresses: [0xf4F2f5F6bAdBE05433C4604320ecC56BbECBC04E](https://etherscan.io/address/0xf4F2f5F6bAdBE05433C4604320ecC56BbECBC04E) A Multisig with 2/3 threshold. * Can upgrade **with no delay** * vbUSDC [via: ProxyAdmin] ##### Yearn Strategist Multisig Addresses: [0x16388463d60FFE0661Cf7F1f31a7D658aC790ff7](https://etherscan.io/address/0x16388463d60FFE0661Cf7F1f31a7D658aC790ff7) A Multisig with 3/8 threshold. Member of Katana vaultBridge Multisig 2. ##### Safe Addresses: [0x261a25ec6c396389B75B6b22BD4A8227070E3B50](https://etherscan.io/address/0x261a25ec6c396389B75B6b22BD4A8227070E3B50) A Multisig with 1/4 threshold. ##### Safe Addresses: [0x3e86A8bcAF0A96DD16Ec8160532DA13b2C0f6e21](https://etherscan.io/address/0x3e86A8bcAF0A96DD16Ec8160532DA13b2C0f6e21) A Multisig with 2/4 threshold. Member of Safe. ##### Conduit Multisig 1 Addresses: [0x4a4962275DF8C60a80d3a25faEc5AA7De116A746](https://etherscan.io/address/0x4a4962275DF8C60a80d3a25faEc5AA7De116A746) A Multisig with 4/11 threshold. ##### Katana yieldRecipient Mulsitig Addresses: [0x67C912fF560951526BffDff66dFbD4DF8AE23756](https://etherscan.io/address/0x67C912fF560951526BffDff66dFbD4DF8AE23756) A Multisig with 2/6 threshold. Member of Safe. ##### Katana Steakhouse Financial / Morpho Multisig Addresses: [0x827e86072B06674a077f592A531dcE4590aDeCdB](https://etherscan.io/address/0x827e86072B06674a077f592A531dcE4590aDeCdB) A Multisig with 2/7 threshold. Member of Katana vaultBridge Multisig 3. ##### Safe Addresses: [0xFA58659F64a393A6E1A548ABc70Ad2CfE1e8f9Cb](https://etherscan.io/address/0xFA58659F64a393A6E1A548ABc70Ad2CfE1e8f9Cb) A Multisig with 2/11 threshold. Member of Safe. ##### EOA 1 Addresses: [0x1FFDA89C755f6D4Af069897D77CcAbb580Fd412a](https://etherscan.io/address/0x1FFDA89C755f6D4Af069897D77CcAbb580Fd412a) * Can interact with SystemConfig * Allowed to commit transactions from the current layer to the host chain ##### EOA 2 Addresses: [0xC1E65a0cEbF95f56Cd8729f7e37CB33eD94d6439](https://etherscan.io/address/0xC1E65a0cEbF95f56Cd8729f7e37CB33eD94d6439) * Can interact with AggchainFEP * sign state transitions (replaces state validation for this aggchain) ##### EOA 4 Addresses: [0x20A53dCb196cD2bcc14Ece01F358f1C849aA51dE](https://etherscan.io/address/0x20A53dCb196cD2bcc14Ece01F358f1C849aA51dE) * Can interact with AgglayerManager * Permissioned to post new state roots and global exit roots accompanied by ZK proofs ### Katana #### Actors ##### GnosisSafeL2 Addresses: [0x4e981bAe8E3cd06Ca911ffFE5504B2653ac1C38a](https://katanascan.com/address/0x4e981bAe8E3cd06Ca911ffFE5504B2653ac1C38a) A Multisig with 2/5 threshold. * Can upgrade **with 12h delay** * AgglayerBridgeL2 [via: L2Timelock with 12h delay (no delay if in emergency state) → ProxyAdmin] * GlobalExitRootManagerL2SovereignChain [via: L2Timelock with 12h delay (no delay if in emergency state) → ProxyAdmin] * Can interact with AgglayerBridgeL2 * manage token mappings and deployments * own and upgrade default L2 token contracts deployed by the bridge * pause the bridge * unpause the bridge * Can interact with GlobalExitRootManagerL2SovereignChain * manage 'claimed' status of global deposit indexes (can freeze bridge transactions), remove global exit roots (used for L2 deposits) * roll back or insert leaves into the local exit tree (LET) that enables withdrawals from the L2. (can steal) * Can interact with L2Timelock * propose, cancel and execute transactions in the timelock, manage all access control roles and change the minimum delay **with 12h delay** [via: - acting directly with 12h delay (no delay if in emergency state)] ##### SafeL2 Addresses: [0xd0673F989bc3BA9314d0AAF28BfC84e99B7898CC](https://katanascan.com/address/0xd0673F989bc3BA9314d0AAF28BfC84e99B7898CC) A Multisig with 3/5 threshold. * Can upgrade **with no delay** * DeployerWhitelist [via: ProxyAdmin] * L2CrossDomainMessenger [via: ProxyAdmin] * GasPriceOracle [via: ProxyAdmin] * L2StandardBridge [via: ProxyAdmin] * SequencerFeeVault [via: ProxyAdmin] * OptimismMintableERC20Factory [via: ProxyAdmin] * L1BlockNumber [via: ProxyAdmin] * L2ERC721Bridge [via: ProxyAdmin] * L1Block [via: ProxyAdmin] * L2ToL1MessagePasser [via: ProxyAdmin] * OptimismMintableERC721Factory [via: ProxyAdmin] * ProxyAdmin [via: ProxyAdmin] * BaseFeeVault [via: ProxyAdmin] * L1FeeVault [via: ProxyAdmin] * OperatorFeeVault [via: ProxyAdmin] * SchemaRegistry [via: ProxyAdmin] * EAS [via: ProxyAdmin] * Can upgrade **with 12h delay** * AgglayerBridgeL2 [via: L2Timelock with 12h delay (no delay if in emergency state) → ProxyAdmin] * GlobalExitRootManagerL2SovereignChain [via: L2Timelock with 12h delay (no delay if in emergency state) → ProxyAdmin] * Can interact with L2Timelock * propose, cancel and execute transactions in the timelock, manage all access control roles and change the minimum delay **with 12h delay** [via: - acting directly with 12h delay (no delay if in emergency state)] ##### BaseFeeVault Addresses: [0x4200000000000000000000000000000000000019](https://katanascan.com/address/0x4200000000000000000000000000000000000019) Collects EIP-1559 base fees * Can interact with OperatorFeeVault * receive fees ##### SafeL2 Addresses: [0x7990513f4d64d57524a0B2519759f53B0cB1aEbd](https://katanascan.com/address/0x7990513f4d64d57524a0B2519759f53B0cB1aEbd) A Multisig with 3/6 threshold. * Can interact with SequencerFeeVault * receive fees * Can interact with BaseFeeVault * receive fees * Can interact with L1FeeVault * receive fees ##### EOA 3 Addresses: [0x3138BBdAeAd339d34F084445192B2be9dd4B9f27](https://katanascan.com/address/0x3138BBdAeAd339d34F084445192B2be9dd4B9f27) * Can interact with GlobalExitRootManagerL2SovereignChain * update the global exit root (GER) that is used for L2 deposits ## Smart contracts ### Ethereum #### AggchainFEP Addresses: [0x100d3ca4f97776A40A7D93dB4AbF0FEA34230666](https://etherscan.io/address/0x100d3ca4f97776A40A7D93dB4AbF0FEA34230666#code), [0x9532A2F35fc9B18BD4FE8315D9C5B1C1Cf6Ac660](https://etherscan.io/address/0x9532A2F35fc9B18BD4FE8315D9C5B1C1Cf6Ac660#code) (Implementation (Upgradable)), [0x5132A183E9F3CB7C848b0AAC5Ae0c4f0491B7aB2](https://etherscan.io/address/0x5132A183E9F3CB7C848b0AAC5Ae0c4f0491B7aB2#code) (Admin) The main system contract defining the katana Aggchain logic. This contract, based on the OP-Succinct L2OutputOracle, supports validity proofs and OP stack outputRoots (L2 state roots) are saved here. * Roles: * **admin**: AgglayerManager * **aggchainManager**: Polygon Multisig 2 * **aggchainSigners**: EOA 2 optimisticMode is enabled by the optimisticModeManager * **optimisticModeManager**: Polygon Multisig 2 Can be upgraded by: AgglayerManager with no delay #### OptimismPortal2 Addresses: [0x250D30c523104bf0a06825e7eAdE4Dc46EdfE40E](https://etherscan.io/address/0x250D30c523104bf0a06825e7eAdE4Dc46EdfE40E#code), [0x3160738db14B27EAe2D0d1b622259010308f4C38](https://etherscan.io/address/0x3160738db14B27EAe2D0d1b622259010308f4C38#code) (Implementation (Upgradable)), [0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832](https://etherscan.io/address/0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832#code) (Admin) Stores the configuration of the OP stack components and proof system. Specifies which game type is used for state validation, which currently is the PermissionedDisputeGame. This contract is modified to disable asset bridging, but it allows forced transactions. * Roles: * **admin**: ProxyAdmin; ultimately Polygon Multisig 2 Can be upgraded by: Polygon Multisig 2 with no delay #### SystemConfig Addresses: [0xb6e1f8B589A14B79DDD3aD7F0589AB548c70C174](https://etherscan.io/address/0xb6e1f8B589A14B79DDD3aD7F0589AB548c70C174#code), [0x42Ad0173051225Ac784100e9acD43349707F4db9](https://etherscan.io/address/0x42Ad0173051225Ac784100e9acD43349707F4db9#code) (Implementation (Upgradable)), [0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832](https://etherscan.io/address/0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832#code) (Admin) Contains configuration parameters such as the Sequencer address, gas limit on this chain and the unsafe block signer address. * Roles: * **admin**: ProxyAdmin; ultimately Polygon Multisig 2 * **batcherHash**: EOA 1 * **owner**: Polygon Multisig 2 Can be upgraded by: Polygon Multisig 2 with no delay #### SuperchainConfig Addresses: [0x2F439B95fa789C5d3a5C99cc70EB3ee83D08a811](https://etherscan.io/address/0x2F439B95fa789C5d3a5C99cc70EB3ee83D08a811#code), [0xE4F9779ab53070a55db24dFAeFf9AF147c6ED550](https://etherscan.io/address/0xE4F9779ab53070a55db24dFAeFf9AF147c6ED550#code) (Implementation (Upgradable)), [0x6d0ff67fb427422AfF35EEa8596949B374b09a52](https://etherscan.io/address/0x6d0ff67fb427422AfF35EEa8596949B374b09a52#code) (Admin) This is NOT the shared SuperchainConfig contract of the OP stack Superchain but rather a local fork. It manages pause states for each chain connected to it, as well as a global pause state for all chains. The guardian role can pause either separately, but each pause expires after 3mo 1d if left untouched. * Roles: * **admin**: ProxyAdmin; ultimately Polygon Multisig 2 * **guardian**: Katana Foundation Engineering/Security Multisig Can be upgraded by: Polygon Multisig 2 with no delay #### AgglayerGateway Addresses: [0x046Bb8bb98Db4ceCbB2929542686B74b516274b3](https://etherscan.io/address/0x046Bb8bb98Db4ceCbB2929542686B74b516274b3#code), [0xD062B7f9fbB89bdA59262E77015C34a27Dc9aB49](https://etherscan.io/address/0xD062B7f9fbB89bdA59262E77015C34a27Dc9aB49#code) (Implementation (Upgradable)), [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://etherscan.io/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) (Admin) A verifier gateway for pessimistic proofs. Manages a map of chains and their verifier keys and is used to route proofs based on the first 4 bytes of proofBytes data in a proof submission. The SP1 verifier is used for all proofs. * Roles: * **addPpRoute**: Timelock; ultimately PolygonAdminMultisig * **admin**: SharedProxyAdmin; ultimately PolygonAdminMultisig * **aggchainDefaultVKey**: PolygonAdminMultisig * **alMultisig**: PolygonAdminMultisig * **freezePpRoute**: PolygonAdminMultisig Can be upgraded by: PolygonAdminMultisig with 3d delay #### AgglayerBridge Addresses: [0x2a3DD3EB832aF982ec71669E178424b10Dca2EDe](https://etherscan.io/address/0x2a3DD3EB832aF982ec71669E178424b10Dca2EDe#code), [0x66E0120e3c965552a89AcC37b03f762624baC5Ad](https://etherscan.io/address/0x66E0120e3c965552a89AcC37b03f762624baC5Ad#code) (Implementation (Upgradable)), [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://etherscan.io/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) (Admin) The shared bridge contract, escrowing user funds sent to Agglayer chains. It is usually mirrored on each chain and can be used to transfer both ERC20 assets and arbitrary messages. * Roles: * **admin**: SharedProxyAdmin; ultimately PolygonAdminMultisig * **proxiedTokensManager**: Timelock; ultimately PolygonAdminMultisig Can be upgraded by: PolygonAdminMultisig with 3d delay #### AgglayerGER Addresses: [0x580bda1e7A0CFAe92Fa7F6c20A3794F169CE3CFb](https://etherscan.io/address/0x580bda1e7A0CFAe92Fa7F6c20A3794F169CE3CFb#code), [0x7F1655d9d570167B2a3FfD1Ef809D3Fdd74427C5](https://etherscan.io/address/0x7F1655d9d570167B2a3FfD1Ef809D3Fdd74427C5#code) (Implementation (Upgradable)), [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://etherscan.io/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) (Admin) A merkle tree storage contract aggregating state roots of each participating Layer 2, thus creating a single global merkle root representing the global state of the Agglayer, the 'global exit root'. The global exit root is synchronized to all connected Layer 2s to help with their interoperability. * Roles: * **admin**: SharedProxyAdmin; ultimately PolygonAdminMultisig Can be upgraded by: PolygonAdminMultisig with 3d delay #### Timelock Addresses: [0xEf1462451C30Ea7aD8555386226059Fe837CA4EF](https://etherscan.io/address/0xEf1462451C30Ea7aD8555386226059Fe837CA4EF#code) A timelock with access control. In the case of an activated emergency state in the AgglayerManager, all transactions through this timelock are immediately executable. The current minimum delay is 3d. * Roles: * **timelockAdmin**: PolygonAdminMultisig (no delay if in emergency state), Timelock (no delay if in emergency state); ultimately PolygonAdminMultisig (no delay if in emergency state) #### vbWBTC Addresses: [0x2C24B57e2CCd1f273045Af6A5f632504C432374F](https://etherscan.io/address/0x2C24B57e2CCd1f273045Af6A5f632504C432374F#code), [0xcC865B0324121b43728176024f58bdbB3afd6f29](https://etherscan.io/address/0xcC865B0324121b43728176024f58bdbB3afd6f29#code) (Implementation (Upgradable)), [0x420693B32113a0e00Eb9f3315D5D5ec3b32C2d69](https://etherscan.io/address/0x420693B32113a0e00Eb9f3315D5D5ec3b32C2d69#code) (Admin) This token contract uses a standard 'vault bridge token' implementation created by Agglayer CDK. It keeps deposited assets in a vault and issues an IOU token (Vault Bridge WBTC) which can be deposited to Agglayer. The underlying asset is generating yield, which does not accrue to the vbWBTC-IOU but is sent to Safe. * Roles: * **admin**: ProxyAdmin; ultimately Katana vaultBridge Multisig 1 Can be upgraded by: Katana vaultBridge Multisig 1 with no delay #### vbETH Addresses: [0x2DC70fb75b88d2eB4715bc06E1595E6D97c34DFF](https://etherscan.io/address/0x2DC70fb75b88d2eB4715bc06E1595E6D97c34DFF#code), [0x81c16F89222C32806Daf01f5129937dFE19D525e](https://etherscan.io/address/0x81c16F89222C32806Daf01f5129937dFE19D525e#code) (Implementation (Upgradable)), [0x14Be6579A41342ca6B402ec85E7be538e6Ade951](https://etherscan.io/address/0x14Be6579A41342ca6B402ec85E7be538e6Ade951#code) (Admin) This token contract uses a standard 'vault bridge token' implementation created by Agglayer CDK. It keeps deposited assets in a vault and issues an IOU token (Vault Bridge ETH) which can be deposited to Agglayer. The underlying asset is generating yield, which does not accrue to the vbETH-IOU but is sent to Safe. * Roles: * **admin**: ProxyAdmin; ultimately Katana vaultBridge Multisig 1 Can be upgraded by: Katana vaultBridge Multisig 1 with no delay #### vbUSDS Addresses: [0x3DD459dE96F9C28e3a343b831cbDC2B93c8C4855](https://etherscan.io/address/0x3DD459dE96F9C28e3a343b831cbDC2B93c8C4855#code), [0xcC865B0324121b43728176024f58bdbB3afd6f29](https://etherscan.io/address/0xcC865B0324121b43728176024f58bdbB3afd6f29#code) (Implementation (Upgradable)), [0xD1e389c046FB734D2a0c7C390312210c408ba832](https://etherscan.io/address/0xD1e389c046FB734D2a0c7C390312210c408ba832#code) (Admin) This token contract uses a standard 'vault bridge token' implementation created by Agglayer CDK. It keeps deposited assets in a vault and issues an IOU token (Vault Bridge USDS) which can be deposited to Agglayer. The underlying asset is generating yield, which does not accrue to the vbUSDS-IOU but is sent to Safe. * Roles: * **admin**: ProxyAdmin; ultimately Katana vaultBridge Multisig 2 Can be upgraded by: Katana vaultBridge Multisig 2 with no delay #### MigrationManager Addresses: [0x417d01B64Ea30C4E163873f3a1f77b727c689e02](https://etherscan.io/address/0x417d01B64Ea30C4E163873f3a1f77b727c689e02#code), [0xC6dD6399eAE419A0a33A8dc307f4c1dB26D30e45](https://etherscan.io/address/0xC6dD6399eAE419A0a33A8dc307f4c1dB26D30e45#code) (Implementation (Upgradable)), [0x263b251D67BB154DD6b8352539466ACE7948ED56](https://etherscan.io/address/0x263b251D67BB154DD6b8352539466ACE7948ED56#code) (Admin) Helper contract for the vaultBridge tokens on Layer 2. If any vbTokens are minted 'natively' on Layer 2, this contract can receive the underlying assets and lock them in the Layer 1 vaults. * Roles: * **admin**: ProxyAdmin; ultimately Polygon Labs Engineering/Security Multisig Can be upgraded by: Polygon Labs Engineering/Security Multisig with no delay #### vbUSDC Addresses: [0x53E82ABbb12638F09d9e624578ccB666217a765e](https://etherscan.io/address/0x53E82ABbb12638F09d9e624578ccB666217a765e#code), [0xcC865B0324121b43728176024f58bdbB3afd6f29](https://etherscan.io/address/0xcC865B0324121b43728176024f58bdbB3afd6f29#code) (Implementation (Upgradable)), [0x8970650CF3f1E57cA804C65B4DBcFf698789FE30](https://etherscan.io/address/0x8970650CF3f1E57cA804C65B4DBcFf698789FE30#code) (Admin) This token contract uses a standard 'vault bridge token' implementation created by Agglayer CDK. It keeps deposited assets in a vault and issues an IOU token (Vault Bridge USDC) which can be deposited to Agglayer. The underlying asset is generating yield, which does not accrue to the vbUSDC-IOU but is sent to Safe. * Roles: * **admin**: ProxyAdmin; ultimately Katana vaultBridge Multisig 3 Can be upgraded by: Katana vaultBridge Multisig 3 with no delay #### vbUSDT Addresses: [0x6d4f9f9f8f0155509ecd6Ac6c544fF27999845CC](https://etherscan.io/address/0x6d4f9f9f8f0155509ecd6Ac6c544fF27999845CC#code), [0xcC865B0324121b43728176024f58bdbB3afd6f29](https://etherscan.io/address/0xcC865B0324121b43728176024f58bdbB3afd6f29#code) (Implementation (Upgradable)), [0x377a9e5df2882DC1DF8A0bD162cbc640eA634010](https://etherscan.io/address/0x377a9e5df2882DC1DF8A0bD162cbc640eA634010#code) (Admin) This token contract uses a standard 'vault bridge token' implementation created by Agglayer CDK. It keeps deposited assets in a vault and issues an IOU token (Vault Bridge USDT) which can be deposited to Agglayer. The underlying asset is generating yield, which does not accrue to the vbUSDT-IOU but is sent to Safe. * Roles: * **admin**: ProxyAdmin; ultimately Katana vaultBridge Multisig 1 Can be upgraded by: Katana vaultBridge Multisig 1 with no delay #### ProxyAdmin Addresses: [0x14Be6579A41342ca6B402ec85E7be538e6Ade951](https://etherscan.io/address/0x14Be6579A41342ca6B402ec85E7be538e6Ade951#code), [0x377a9e5df2882DC1DF8A0bD162cbc640eA634010](https://etherscan.io/address/0x377a9e5df2882DC1DF8A0bD162cbc640eA634010#code), [0x420693B32113a0e00Eb9f3315D5D5ec3b32C2d69](https://etherscan.io/address/0x420693B32113a0e00Eb9f3315D5D5ec3b32C2d69#code) * Roles: * **owner**: Katana vaultBridge Multisig 1 #### ProxyAdmin Addresses: [0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832](https://etherscan.io/address/0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832#code), [0x6d0ff67fb427422AfF35EEa8596949B374b09a52](https://etherscan.io/address/0x6d0ff67fb427422AfF35EEa8596949B374b09a52#code) * Roles: * **owner**: Polygon Multisig 2 #### PreimageOracle Addresses: [0x1E1d73536A081Ef2F355d29794547a9770Aeb1E0](https://etherscan.io/address/0x1E1d73536A081Ef2F355d29794547a9770Aeb1E0#code) The PreimageOracle contract is used to load the required data from L1 for a dispute game. #### ProxyAdmin Addresses: [0x263b251D67BB154DD6b8352539466ACE7948ED56](https://etherscan.io/address/0x263b251D67BB154DD6b8352539466ACE7948ED56#code) * Roles: * **owner**: Polygon Labs Engineering/Security Multisig #### ProxyAdmin Addresses: [0x8970650CF3f1E57cA804C65B4DBcFf698789FE30](https://etherscan.io/address/0x8970650CF3f1E57cA804C65B4DBcFf698789FE30#code) * Roles: * **owner**: Katana vaultBridge Multisig 3 #### DelayedWETH Addresses: [0x99e1fe97767683bbba69fF570b4BbEd7C3e0649e](https://etherscan.io/address/0x99e1fe97767683bbba69fF570b4BbEd7C3e0649e#code), [0xE440CC08A71694C8229323803F59024E3144630e](https://etherscan.io/address/0xE440CC08A71694C8229323803F59024E3144630e#code) (Implementation (Upgradable)), [0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832](https://etherscan.io/address/0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832#code) (Admin) Contract designed to hold the bonded ETH for each game. It is designed as a wrapper around WETH to allow an owner to function as a backstop if a game would incorrectly distribute funds. * Roles: * **admin**: ProxyAdmin; ultimately Polygon Multisig 2 Can be upgraded by: Polygon Multisig 2 with no delay #### AnchorStateRegistry Addresses: [0xaA8a62563CFe4E36118ED479B5486F503b438376](https://etherscan.io/address/0xaA8a62563CFe4E36118ED479B5486F503b438376#code), [0x8F40Cc98D694AB986F026C5383A181FCc9B6B281](https://etherscan.io/address/0x8F40Cc98D694AB986F026C5383A181FCc9B6B281#code) (Implementation (Upgradable)), [0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832](https://etherscan.io/address/0x19DbD16f0a8e706D817B7e3b7bcF72917Ebb8832#code) (Admin) Contains the latest confirmed state root that can be used as a starting point in a dispute game. This variant stores respectedGameType, retirementTimestamp, and disputeGameFinalityDelaySeconds locally and drops the legacy *FromGame fields, since the AggregateVerifier model does not expose vm()/weth()/absolutePrestate() on its game implementation. * Roles: * **admin**: ProxyAdmin; ultimately Polygon Multisig 2 Can be upgraded by: Polygon Multisig 2 with no delay #### MIPS Addresses: [0xaCc005DCd857B401e4732E6F7837135A22825cfA](https://etherscan.io/address/0xaCc005DCd857B401e4732E6F7837135A22825cfA#code) The MIPS contract is used to execute the final step of the dispute game which objectively determines the winner of the dispute. #### ProxyAdmin Addresses: [0xD1e389c046FB734D2a0c7C390312210c408ba832](https://etherscan.io/address/0xD1e389c046FB734D2a0c7C390312210c408ba832#code) * Roles: * **owner**: Katana vaultBridge Multisig 2 #### PermissionedDisputeGame Addresses: [0xe1dFFCBE4e22B813F26d2106D943C102e7cAb87e](https://etherscan.io/address/0xe1dFFCBE4e22B813F26d2106D943C102e7cAb87e#code) Same as FaultDisputeGame, but only two permissioned addresses are designated as proposer and challenger. #### SP1Verifier Addresses: [0x0459d576A6223fEeA177Fb3DF53C9c77BF84C459](https://etherscan.io/address/0x0459d576A6223fEeA177Fb3DF53C9c77BF84C459#code) Verifier contract for SP1 proofs (v5.0.0). #### SharedProxyAdmin Addresses: [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://etherscan.io/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) * Roles: * **owner**: Timelock #### BridgeLib Addresses: [0x3622Fcf450ca40a340b7492Ae5F60E7c7Ea68aB3](https://etherscan.io/address/0x3622Fcf450ca40a340b7492Ae5F60E7c7Ea68aB3#code) Extension contract of the AgglayerBridge for asset metadata.. #### SP1Verifier Addresses: [0xc3c6dDDAc8829b233Dc6536Ec024775a57b0AF2A](https://etherscan.io/address/0xc3c6dDDAc8829b233Dc6536Ec024775a57b0AF2A#code) Verifier contract for SP1 proofs (v6.1.0). ### Katana #### AgglayerBridgeL2 Addresses: [0x2a3DD3EB832aF982ec71669E178424b10Dca2EDe](https://katanascan.com/address/0x2a3DD3EB832aF982ec71669E178424b10Dca2EDe#code), [0x094B1B2322F1A8927B61dfAf686CA78d71C6cbf6](https://katanascan.com/address/0x094B1B2322F1A8927B61dfAf686CA78d71C6cbf6#code) (Implementation (Upgradable)), [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://katanascan.com/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) (Admin) Agglayer bridge contract. Supports interop with Ethereum and blockchains connected to Agglayer. Escrows all preminted ETH because it cannot mint on the L2. The globalExitRootManager is used as an oracle to validate bridge messages against. * Roles: * **admin**: ProxyAdmin; ultimately GnosisSafeL2, SafeL2 * **bridgeManager**: GnosisSafeL2 * **emergencyBridgePauser**: GnosisSafeL2 * **emergencyBridgeUnpauser**: GnosisSafeL2 * **getProxiedTokensManager**: GnosisSafeL2 Can be upgraded by: GnosisSafeL2 with 12h delay, SafeL2 with 12h delay #### GlobalExitRootManagerL2SovereignChain Addresses: [0xa40D5f56745a118D0906a34E69aeC8C0Db1cB8fA](https://katanascan.com/address/0xa40D5f56745a118D0906a34E69aeC8C0Db1cB8fA#code), [0x0200143Fa295EE4dffEF22eE2616c2E008D81688](https://katanascan.com/address/0x0200143Fa295EE4dffEF22eE2616c2E008D81688#code) (Implementation (Upgradable)), [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://katanascan.com/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) (Admin) Manages Layer 2 and global merkle roots (exit roots). It stores exit roots written during bridge deposits, accepts imported global exit roots from a permissioned address, and manages historical roots. * Roles: * **admin**: ProxyAdmin; ultimately GnosisSafeL2, SafeL2 * **globalExitRootRemover**: GnosisSafeL2, GnosisSafeL2 if the bridge is paused * **globalExitRootUpdater**: EOA 3 Can be upgraded by: GnosisSafeL2 with 12h delay, SafeL2 with 12h delay #### L2Timelock Addresses: [0xBBa0935Fa93Eb23de7990b47F0D96a8f75766d13](https://katanascan.com/address/0xBBa0935Fa93Eb23de7990b47F0D96a8f75766d13#code) A timelock with access control. The current minimum delay is 12h. * Roles: * **timelockAdmin**: GnosisSafeL2 (no delay if in emergency state), SafeL2 (no delay if in emergency state) #### ProxyAdmin Addresses: [0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A](https://katanascan.com/address/0x0F99738B2Fc14D77308337f3e2596b63aE7BCC4A#code) * Roles: * **owner**: L2Timelock #### DeployerWhitelist Addresses: [0x4200000000000000000000000000000000000002](https://katanascan.com/address/0x4200000000000000000000000000000000000002#code), [0xc0d3c0d3C0d3c0D3c0d3C0D3c0d3C0d3c0D30002](https://katanascan.com/address/0xc0d3c0d3C0d3c0D3c0d3C0D3c0d3C0d3c0D30002#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### L2CrossDomainMessenger Addresses: [0x4200000000000000000000000000000000000007](https://katanascan.com/address/0x4200000000000000000000000000000000000007#code), [0xC0d3c0d3c0D3c0D3C0d3C0D3C0D3c0d3c0d30007](https://katanascan.com/address/0xC0d3c0d3c0D3c0D3C0d3C0D3C0D3c0d3c0d30007#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) The L2CrossDomainMessenger (L2xDM) contract sends messages from L2 to L1, and relays messages from L1 onto L2 with a system tx. In the event that a message sent from L2 to L1 is rejected for exceeding the L1 gas limit, it can be resubmitted via this contract’s replay function. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### GasPriceOracle Addresses: [0x420000000000000000000000000000000000000F](https://katanascan.com/address/0x420000000000000000000000000000000000000F#code), [0x4f1db3c6AbD250ba86E0928471A8F7DB3AFd88F1](https://katanascan.com/address/0x4f1db3c6AbD250ba86E0928471A8F7DB3AFd88F1#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Provides the current gas price for L2 transactions. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### SequencerFeeVault Addresses: [0x4200000000000000000000000000000000000011](https://katanascan.com/address/0x4200000000000000000000000000000000000011#code), [0x8A52Ca0E8459460C6861C117285E6973Ecf7EE3f](https://katanascan.com/address/0x8A52Ca0E8459460C6861C117285E6973Ecf7EE3f#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Collects the sequencer fees. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 * **recipient**: SafeL2 Can be upgraded by: SafeL2 with no delay #### L1BlockNumber Addresses: [0x4200000000000000000000000000000000000013](https://katanascan.com/address/0x4200000000000000000000000000000000000013#code), [0xC0D3C0d3C0D3c0D3C0d3c0D3C0d3c0d3C0d30013](https://katanascan.com/address/0xC0D3C0d3C0D3c0D3C0d3c0D3C0d3c0d3C0d30013#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Simple contract that returns the latest L1 block number. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### L1Block Addresses: [0x4200000000000000000000000000000000000015](https://katanascan.com/address/0x4200000000000000000000000000000000000015#code), [0x3Ba4007f5C922FBb33C454B41ea7a1f11E83df2C](https://katanascan.com/address/0x3Ba4007f5C922FBb33C454B41ea7a1f11E83df2C#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Simple contract that returns information about the latest L1 block, which is derived permissionlessly from the L1 chain. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### L2ToL1MessagePasser Addresses: [0x4200000000000000000000000000000000000016](https://katanascan.com/address/0x4200000000000000000000000000000000000016#code), [0xFBF44D0341C03098A1D9C0336e3d5C34E8BFdf1A](https://katanascan.com/address/0xFBF44D0341C03098A1D9C0336e3d5C34E8BFdf1A#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Contract used internally by the L2CrossDomainMessenger to send messages to L1. It can also be used directly as a low-level interface. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### ProxyAdmin Addresses: [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code), [0xC0d3C0D3c0d3C0d3c0d3c0D3C0D3C0d3C0D30018](https://katanascan.com/address/0xC0d3C0D3c0d3C0d3c0d3c0D3C0D3C0d3C0D30018#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 * **owner**: SafeL2 Can be upgraded by: SafeL2 with no delay #### L1FeeVault Addresses: [0x420000000000000000000000000000000000001A](https://katanascan.com/address/0x420000000000000000000000000000000000001A#code), [0x0ebC896698De72A444d00Dc3d046B432c555EB09](https://katanascan.com/address/0x0ebC896698De72A444d00Dc3d046B432c555EB09#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Collects the L1 portion of the L2 transaction fees. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 * **recipient**: SafeL2 Can be upgraded by: SafeL2 with no delay #### OperatorFeeVault Addresses: [0x420000000000000000000000000000000000001b](https://katanascan.com/address/0x420000000000000000000000000000000000001b#code), [0x4fa2Be8cd41504037F1838BcE3bCC93bC68Ff537](https://katanascan.com/address/0x4fa2Be8cd41504037F1838BcE3bCC93bC68Ff537#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Collects the operator fees. * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 * **recipient**: BaseFeeVault Can be upgraded by: SafeL2 with no delay #### SchemaRegistry Addresses: [0x4200000000000000000000000000000000000020](https://katanascan.com/address/0x4200000000000000000000000000000000000020#code), [0xc0d3c0d3c0d3C0d3c0d3C0D3C0D3c0d3C0D30020](https://katanascan.com/address/0xc0d3c0d3c0d3C0d3c0d3C0D3C0D3c0d3C0D30020#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Contracts to register schemas for the Ethereum Attestation Service (EAS). * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### EAS Addresses: [0x4200000000000000000000000000000000000021](https://katanascan.com/address/0x4200000000000000000000000000000000000021#code), [0xC0D3c0D3C0d3c0D3c0D3C0D3c0D3c0d3c0d30021](https://katanascan.com/address/0xC0D3c0D3C0d3c0D3c0D3C0D3c0D3c0d3c0d30021#code) (Implementation (Upgradable)), [0x4200000000000000000000000000000000000018](https://katanascan.com/address/0x4200000000000000000000000000000000000018#code) (Admin) Contract containing the main logic for the Ethereum Attestation Service (EAS). * Roles: * **admin**: ProxyAdmin; ultimately SafeL2 Can be upgraded by: SafeL2 with no delay #### BridgeLib Addresses: [0xb30C032b183525de7427f04e79F45Cd19866E124](https://katanascan.com/address/0xb30C032b183525de7427f04e79F45Cd19866E124#code) Utility library contract for the AgglayerBridgeL2. #### TokenWrappedBridgeUpgradeable Addresses: [0xF0777a825470092b3Debc9af291634460b8E1a2c](https://katanascan.com/address/0xF0777a825470092b3Debc9af291634460b8E1a2c#code) An ERC-20 implementation designed for cross-chain assets on the L2. It restricts token minting or burning strictly to the primary bridge contract. The bridge address is set on each token proxy during initialization. The current deployment carries some associated risks: - Funds can be stolen if the contracts or their dependencies (e.g. AggLayerGateway) receive a malicious code upgrade. There is no delay on upgrades.