Security · Audits
What the review found
Security review by Nethermind Security, 28 May 2026 · NM-0828 · scope: the core protocol contracts (contracts/core/) — about 3,800 lines of Solidity · changes after commit cf91f1a are outside it
- 0
- Critical, high, or medium findings
- Across the audited core protocol scope
- 5 of 5
- Findings fixed
- 2 low, 3 informational — none acknowledged, mitigated, or unresolved
- ~3,800
- Lines of Solidity in scope
- contracts/core/ at commit cf91f1a
- High
- Documentation and test-suite rating
- Nethermind's own assessment of both
Scope
Where the review stops
-
Covered
Nethermind reviewed the core protocol contracts (contracts/core/) — about 3,800 lines of Solidity, under engagement NM-0828. That is the framework itself.
-
Not covered
Example contracts, custom extensions, and anything you build on top. Your own code needs its own review.
-
Not the same as live
An audit reduces risk; it does not remove it, and it is not a mainnet deployment. Official Protocol deployments are on Sepolia today.
Trust centre
Keep checking
Send it to your own reviewer
The report is public at a pinned commit, so a third party can check it without going through us.
Nethermind (NM_0828) — scope: core protocol contracts