D1
Access Control
Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.
Weight 18%62% confidence
55
Moderate
info
How This Score Is Built
Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.
+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative
Score Composition
0
SHARPVerifierCallProxy: 13 modifiers (comprehensive RBAC)
+14
33 modifiers total but 5/10 contracts have ZERO modifiers
+14
Bridge: onlyOwner (single owner), _isAuthorized custom check
+14
StarkExchange: onlyGovernance, notFinalized, notFrozen
+14
DACommittee, GpsFactRegistryAdapter, MemoryPageFactRegistry, OrderRegistry, SHARPVerifier: 0 modifiers
Evidence Chain (2 files)
GitHub APIMay 17, 2026, 06:58 PM
open_in_newGitHub (/)sha256:6ba52e2dc8cf...
BlackHart AnalysisMay 4, 2026, 10:30 PM
open_in_newAccess Control — Source Codesha256:ff702030f5b0...
Score History
—
Automated pipeline dimension update