~ prop 4 Smart Contract Audit Cert:
1) Launch dao(s) 4 @Quantstamp // @trailofbits // @NomicLabs >>
2) Promote norm of attaching:
function certifyContract(bool _certified) public {
require(msg.sender == auditor);
certified = _certified;
}
into deploys (?
-
Show this thread
Replying to @r_ross_campbell @Quantstamp and
Dan Guido Retweeted Dan Guido
Providing an index of 3rd party reviews of smart contract code is fine, but please note that having your code reviewed by a security expert is not a certification. See, for example:https://twitter.com/dguido/status/1253728087755427842 …
Dan Guido added,
Dan Guido @dguido
Replying to @SarahJamieLewis @alchemyDC and 2 others
I wanted to respond since @trailofbits was mentioned:
We rapidly reviewed ZecWallet over 1 week in Apr 2019 and found a record 26 bugs; a substantial number for a short project that implies more bugs exist. Security review is not a guarantee of safety. https://github.com/trailofbits/publications/blob/master/reviews/zecwallet.pdf …
5:31 PM - 24 Apr 2020
0 replies
0 retweets
2 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.