D8
Supply Chain
Compiler version CVEs, library dependencies, build reproducibility, and proxy pattern risk.
Weight 4%50% confidence
68
Moderate
info
How This Score Is Built
Compiler version CVEs, library dependencies, build reproducibility, and proxy pattern risk.
+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative
Score Composition
-32
No exotic compiler versions
+34
BentoBox fork (SushiSwap origin) - well-understood codebase
+34
Standard Solidity dependencies (OpenZeppelin base)
Evidence Chain (2 files)
GitHub APIMay 17, 2026, 06:58 PM
open_in_newGitHub (/)sha256:8c8753a43404...
BlackHart AnalysisMay 4, 2026, 11:30 PM
open_in_newSupply Chain — GitHub Supply Chainsha256:0dd4bcd30ffa...
Score History
—
Automated pipeline dimension update