DeFi Accounting
Share price, oracle freshness, liquidation edges, fee indexes, and solvency drift.
Free audit workflow tool
Guided audit
Work through one section at a time.
This checklist covers scope, architecture, access control, reentrancy, oracle manipulation, governance, signatures, denial of service, cross-chain assumptions, and report quality.
Checklist sections
The interactive tool stays focused above. This summary makes the audit surfaces clear for readers, crawlers, and AI search systems.
Share price, oracle freshness, liquidation edges, fee indexes, and solvency drift.
External assumptions, upgradeable dependencies, approvals, decimals, and paused integrations.
Replay protection, finality, rate limits, token mapping, and emergency isolation.
Non-standard tokens, balance deltas, mint authority, allowance races, and receiver hooks.
Unexpected call order, single-block manipulation, actor overlap, dust, and griefing cost.
Scope, input validation, state machines, events, and executable invariants.
Role blast radius, escalation paths, emergency powers, admin loss, and delay controls.
State-before-call ordering, callbacks, return values, gas assumptions, and untrusted targets.
Domain binding, encoding collisions, unique leaves, proof consumption, and root rotation.
Unbounded state, edge values, order dependence, accounting drift, and fail-closed behavior.
Storage layout, delegatecall, assembly, deterministic deployment, and Cairo serialization.
Domain separation, malleability, nonce scope, permit safety, and contract wallets.
Proposal lifecycle, snapshots, timelock bypasses, batches, and emergency cancellation.
Compiler settings, known bugs, dependency drift, chain differences, and deployment scripts.
Impact proof, reproduction steps, affected code, specific remediation, and regression tests.
Go deeper
FAQ
A smart contract audit checklist is a structured review workflow for finding issues in access control, accounting, external calls, signatures, cross-chain logic, upgrade paths, and report quality before or during a security review.
Pick the protocol type, use Guided audit mode to work through one section at a time, mark completed checks, then export the selected checks and report outline.
Yes. The tool includes protocol filters for DeFi, token and NFT systems, governance, cross-chain systems, Cairo, and broader multi-contract systems.
No. This checklist helps structure review work, triage common risk areas, and prepare report notes, but it does not replace expert manual review, testing, and threat modeling.
Yes. You can email yourself the selected checks, remediation prompts, and report sections from the export panel.