D1
Access Control
Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.
Weight 18%88% confidence
76
Good
info
How This Score Is Built
Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.
+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative
Score Composition
+15
Cosmos-based chain with validator set
+15
Smart contract bridge to Ethereum
+15
Governance controls protocol parameters
+15
Operator permissions for market creation
+15
ClobPairIdFilter bypass: authenticator ACL on trading sub-keys can be circumvented, enabling full account drain from restricted keys
Evidence Chain (2 files)
GitHub APIMay 17, 2026, 06:58 PM
open_in_newGitHub (/)sha256:a2861c700c29...
BlackHart AnalysisMay 13, 2026, 06:30 PM
open_in_newAccess Control — Source Codesha256:a40c26c9f74f...
Score History
—
Automated pipeline dimension update—
Automated pipeline dimension update