Skip to main content

⚡ Penalties

When you join CSM, your bond acts as collateral for all validators under your Node Operator. Penalties and charges are deducted from that bond.

Penalties

  • General Delayed Penalty: used for protocol violations that require review, such as execution-layer rewards being sent to the wrong address. It covers the assessed loss plus an additional fine.
  • Bad performance ejection penalty: applied when a validator accumulates enough strikes to be ejected for repeated poor performance.
  • Slashing penalty: covers losses associated with a slashed validator.
  • Exit delay charge: applied when a validator does not exit within the allowed time after a protocol request.
  • Key removal charge: applied when an uploaded key is removed before it has been deposited.
  • Triggerable Exit fee: covers the execution-layer cost of forcing a validator exit when the Node Operator does not process it.

What can affect your bond

SituationWhat happens
Removing an uploaded validator key from the queue before it is depositedA small key removal charge is taken from the bond.
Repeated poor performanceA validator receives strikes when it performs below the applicable threshold. Enough strikes can trigger its exit and a Bad performance ejection penalty.
Missing a requested exit deadlineAn exit delay charge is applied after the validator withdraws. A forced exit may also add the Triggerable Exit fee.
SlashingLosses associated with the slashed validator are assessed and deducted from the bond after withdrawal.
Redirecting Execution Layer rewards or another protocol violationThe assessed loss and an additional fine can be reported as a General Delayed Penalty.

When a validator exits, CSM compares its withdrawal balance with its confirmed expected balance. For a non-slashed validator, any shortfall is applied directly to the bond. Slashed validators use a separate reporting flow so the full loss can be assessed before it is deducted.

One period of poor performance does not immediately reduce your bond. The validator first loses its Node Operator reward for that 28-day frame and receives a strike. Strikes expire after the applicable lifetime if the validator does not continue underperforming.

Parameters by operator profile

Penalty and charge amounts, as well as performance thresholds, depend on your operator profile.

Parameter0x01 Default0x01 ICS0x01 IDVTC0x02 Default
Key removal charge0.02 ETH0.01 ETH0.01 ETH0.02 ETH
Performance leeway3%5% for the first 150 keys;
3% after
3%3%
Strikes before ejection3 within 6 frames4 within 6 frames3 within 6 frames3 within 6 frames
Bad performance ejection penalty0.258 ETH0.172 ETH0.258 ETH0.258 ETH per 32 ETH of validator balance;
up to 16.512 ETH
Time to process a requested exit4 days5 days5 days4 days
Exit delay charge0.1 ETH0.05 ETH0.05 ETH0.1 ETH per 32 ETH of validator balance;
up to 6.4 ETH
General Delayed Penalty additional fine0.1 ETH0.05 ETH0.05 ETH0.1 ETH

The Slashing penalty and the loss component of a General Delayed Penalty depend on the assessed loss. The Triggerable Exit fee depends on the execution-layer withdrawal request cost and does not scale with the validator balance, so these do not have fixed values in the table.

How penalties and charges are applied

Most validator-specific penalties and exit-related charges are applied after withdrawal, when the validator's final balance and any losses can be confirmed.

A General Delayed Penalty works differently:

  1. The assessed loss and additional fine are locked from the bond when the violation is reported.
  2. The Node Operator can compensate the reported amount or contact the CSM support team if the report is incorrect.
  3. If the report is confirmed through Easy Track, the locked amount is burned. If it is cancelled, or if the lock expires and is cleared, the bond becomes available again.

If your bond becomes insufficient

Penalties and charges can leave some of your keys or validators unbonded. New rewards are then used to restore the required bond before they can be claimed.

If a penalty or charge is larger than the available bond, the outstanding amount is recorded as debt and recovered from future bond top-ups and rewards.

Undeposited unbonded keys stop receiving deposits. Validators that remain unbonded may be requested to exit, but you can top up the bond before the request is processed.

Avoiding penalties and charges