Why audit?
- Firstly, 3.2B was stolen from crypto projects in 2022.
- Secondly, smart contracts have irreversible nature: once deployed, they cannot be modified.
- What types of contracts does Astor audit? Astor audits contracts of any difficulty: token Standards ERC20, ERC721, ERC1155. Aside from tokens, Astor audits smart contracts for DAOs, staking, NFTs, DApps, DEXs, Farms (MasterChefs and others), Lending, marketplaces, auctions, games, bridges.
- What languages does Astor audit? Astor performs audits for Solidity and Rust languages. Requests for other audits can be discussed by contacting our team.
- Does a passed audit mean that the project is safe? A finalized audit, unfortunately, does not guarantee project’s safety. Before investing it’s good to recheck the existing issues and vulnerabilities, presented in the audit report. It also helps if the project’s lp is locked, and the project’s team is known publicly or has passed a KYC by a tire one security company.
- How to read a Astor audit report? Astor report consists of several blocks: aside from disclaimer, Astor reviews submitted contracts, outlining the main issues in each contract. Auditors state the issue and present a short description with the potential danger of said issue. Note that there is a table of contents, in this case, audited contracts. It’s important to make sure that all the contracts have indeed been audited and that a client didn’t add new ones that haven’t been reviewed.
- What separates an Astor audit from any other one? Astor team has a rich background in security. Our team of auditors has a vast library of known issues and thanks to manual reviews, they have the ability to find even minor errors. The reviews are performed first by an automated tool, then by two separate teams. This process is aimed at eliminating the possibility of missed vulnerabilities.
What are the benefits of an audit?
- Ensure top-notch security of your protocol
- Detect any vulnerabilities and find a way to fix them.
- Improve smart contract performance.
- Ensure correct integration into the defi ecosystem.
- Boost your project’s credibility, ensure trust & respect.
- Provide safe and secure liquidity flow in the protocol
What are the typical flaws find in an audit?
- Coding Flaws: Identify deadly mistakes like reentrancy, improper input validation, uninitialized data and much more.
- Design Flaws: Uncover critical vulnerabilities in core business logic. The code may match the spec, but is that what you really want?
- Economic Flaws: Unmask economic flaws, including price manipulation (flash loan) hazards, MEV, front-running and more
How we work?
- Quote: Request a quote and receive an estimation of the audit scope, timeline, and price
- Audit: Line by line manual inspection of your smart contract’s source code by our team of auditors
- Report: Detected logical errors, design issues, gas costly patterns and security vulnerabilities with a recommendation
- Verify: Auditors ensure that vulnerabilities detected have been successfully remediated
- Certify: Once verified, Astor issues a certified report and validates your security standards
What are the supported ecosystems?
Etherium, BSC, POLYGON, ARBITRUM, OPTIMISM, AVALANCHE, FANTOM, GNOSIS, MOONBEAM
Why Astor?
- We don’t just run automated tools – our engineers think deeply what could go wrong. This research mindset is how we have the best track record in the industry
- We profoundly analyse your smart contract to detect vulnerabilities and help optimize your project. We found security and/or optimization issues in 90% of our client’s projects.