Skip to main content

Security · Audits

What the review found

Security review by Nethermind Security, 28 May 2026 · NM-0828 · scope: the core protocol contracts (contracts/core/) — about 3,800 lines of Solidity · changes after commit cf91f1a are outside it

Audit result
0
Critical, high, or medium findings
Across the audited core protocol scope
5 of 5
Findings fixed
2 low, 3 informational — none acknowledged, mitigated, or unresolved
~3,800
Lines of Solidity in scope
contracts/core/ at commit cf91f1a
High
Documentation and test-suite rating
Nethermind's own assessment of both
Read report (PDF) (opens in a new tab)

Scope

Where the review stops

  • Covered

    Nethermind reviewed the core protocol contracts (contracts/core/) — about 3,800 lines of Solidity, under engagement NM-0828. That is the framework itself.

  • Not covered

    Example contracts, custom extensions, and anything you build on top. Your own code needs its own review.

  • Not the same as live

    An audit reduces risk; it does not remove it, and it is not a mainnet deployment. Official Protocol deployments are on Sepolia today.

Send it to your own reviewer

The report is public at a pinned commit, so a third party can check it without going through us.

Nethermind (NM_0828) — scope: core protocol contracts