forked from interfinetwork/smart-contract-audits
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
1 parent
0253c6e
commit 85d5759
Showing
1 changed file
with
15 additions
and
33 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,49 +1,31 @@ | ||
# Smart Contract Audits By InterFi Network | ||
InterFi provides blockchain security and assessment services. In this repository, we'll upload audited smart contracts, and projects. To request a smart contract audit, contact https://t.me/interfiaudits or [email protected] | ||
# Smart Contract Audit | ||
InterFi Network provides intelligent blockchain solutions. We have worked on major public blockchains - Binance, Ethereum, Cronos, Tron, Polygon, Avalanche, Doge, Metis, Fantom, Bitcoin Cash, Oasis, etc. In this repository, we'll upload audit reports and audit compliance certificates. To request a smart contract audit, contact https://t.me/interfiaudits or [email protected] | ||
|
||
Automated analysis is performed to identify common contract vulnerabilities. | ||
|
||
# InterFi's Echelon Auditing Methodology | ||
Simulations are performed to identify centralized exploits causing contract and/or trade pause. | ||
|
||
The aim of InterFi’s “Echelon” standard is to analyze the smart contract and identify the vulnerabilities and the hacks in the smart contract. Mentioned are the steps used by ECHELON-1 to assess the smart contract: | ||
A manual line-by-line analysis is performed to identify contract issues and centralized privileges. | ||
|
||
1. Solidity smart contract source code reviewal: | ||
|
||
Review of the specifications, sources, and instructions provided to InterFi to make sure we understand the size, scope, and functionality of the smart contract. | ||
# About InterFi Network | ||
|
||
Manual review of code, which is the process of reading source code line-byline to identify potential vulnerabilities. | ||
InterFi Network provides intelligent blockchain solutions. We provide solidity development, testing, and auditing services. We have developed 150+ solidity codes, audited 1000+ smart contracts, and analyzed 500,000+ code lines. | ||
|
||
2. Static, Manual, and Automated AI analysis: | ||
Website: https://interfi.network | ||
|
||
Test coverage analysis, which is the process of determining whether the test cases are covering the code and how much code is exercised when we run those test cases. | ||
Email: [email protected] | ||
|
||
Symbolic execution, which is analysing a program to determine what inputs causes each part of a program to execute. | ||
GitHub: https://github.com/interfinetwork | ||
|
||
3. Best practices review, which is a review of the smart contracts to improve efficiency, effectiveness, clarify, maintainability, security, and control based on the established industry and academic practices, recommendations, and research. | ||
Telegram (Engineering): https://t.me/interfiaudits | ||
|
||
4. Specific, itemized, actionable recommendations to help you take steps to secure your smart contracts. | ||
Telegram (Onboarding): https://t.me/interfisupport | ||
|
||
|
||
# Important Disclaimer | ||
Smart contracts are analyzed for common contract vulnerabilities, and centralization exploits. The audit report makes no statements or warranties on the security of the code. The audit report does not provide any warranty or guarantee regarding the absolute bug-free nature of the smart contract analyzed, nor does it provide any indication of the client’s business, business model or legal compliance. The audit report does not extend to the compiler layer, any other areas beyond the programming language, or other programming aspects that could present security risks. Cryptographic tokens are emergent technologies, they carry high levels of technical risks and uncertainty. You agree that your access and/or use, including but not limited to any services, reports, and materials, will be at your sole risk on an as-is, where-is, and as-available basis. The audit report could include false positives, false negatives, and other unpredictable results. | ||
|
||
InterFi Network provides contract auditing and project verification services for blockchain projects. The purpose of the audit is to analyse the on-chain smart contract source code, and to provide basic overview of the project. This report should not be transmitted, disclosed, referred to, or relied upon by any person for any purposes without InterFi’s prior written consent. | ||
|
||
InterFi provides the easy-to-understand assessment of the project, and the smart contract (otherwise known as the source code). The audit makes no statements or warranties on the security of the code. It also cannot be considered as an enough assessment regarding the utility and safety of the code, bug-free status, or any other statements of the contract. While we have used all the data at our disposal to provide the transparent analysis, it is important to note that you should not rely on this report only — we recommend proceeding with several independent audits and a public bug bounty program to ensure the security of smart contracts. Be aware that smart contracts deployed on a blockchain aren’t resistant from external vulnerability, or a hack. Be aware that active smart contract owner privileges constitute an elevated impact to smart contract’s safety and security. Therefore, InterFi does not guarantee the explicit security of the audited smart contract. | ||
|
||
The analysis of the security is purely based on the smart contracts alone. No applications or operations were reviewed for security. No product code has been reviewed. | ||
|
||
This report should not be considered as an endorsement or disapproval of any project or team. The information provided on this report does not constitute investment advice, financial advice, trading advice, or any other sort of advice and you should not treat any of the report’s content as such. Do conduct your own due diligence and consult your financial advisor before making any investment decisions. | ||
|
||
|
||
# About InterFi Network | ||
|
||
InterFi Network provides intelligent blockchain solutions. InterFi is developing an ecosystem that is seamless and responsive. Some of our services: Smart Contract Auditing, Solidity Development, Solidity Analysis, KYC Verification, Project Evaluation, etc. InterFi is planning to launch a token credibility assessment tool, automated dynamic audit analysis tool in the future. InterFi’s ultimate mission is to interconnect multiple services like Blockchain Security, DeFi, GameFi, and Marketplace under one ecosystem that is seamless, multi-chain compatible, scalable, secure, fast, responsive, and easy-to-use. | ||
|
||
InterFi is built by a decentralized team of UI experts, contributors, engineers, and enthusiasts from all over the world. Our team currently consists of 6+ core team members, and 10+ casual contributors. InterFi provides manual, static, and automatic smart contract analysis, to ensure that project is checked against known attacks and potential vulnerabilities. | ||
|
||
To learn more, visit https://interfi.network | ||
|
||
To view our audit portfolio, visit https://github.com/interfinetwork | ||
|
||
To book an audit, message https://t.me/interfiaudits | ||
|
||
Smart contract audit does not indicate the endorsement of any particular project or team, nor guarantees its security. No third party should rely on the reports in any way, including to make any decisions to buy or sell a product, service or any other asset. Information provided in the report does not constitute investment advice, financial advice, trading advice, or any other sort of advice and you should not treat any of the report’s content as such. The audit report should not be used in any way to make decisions around investment or involvement. The report in no way provides investment advice, nor should be leveraged as investment advice of any sort. | ||
|
||
FOR AVOIDANCE OF DOUBT, SERVICES, INCLUDING ANY ASSOCIATED AUDIT REPORTS OR MATERIALS, SHALL NOT BE CONSIDERED OR RELIED UPON AS ANY FORM OF FINANCIAL, TAX, LEGAL, REGULATORY, OR OTHER ADVICE. |