D1
Access Control
Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.
Weight 18%88% confidence
90
Excellent
info
How This Score Is Built
Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.
+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative
Score Composition
-5
Minimal admin surface - stream creation is permissionless
-5
No global admin or pause mechanism in V2
+45
Cancel/withdraw controls per-stream by sender/recipient
+45
NFT representation of streams (ERC-721)
Evidence Chain (2 files)
GitHub APIMay 17, 2026, 06:58 PM
open_in_newGitHub (/)sha256:140af43551d9...
BlackHart AnalysisMay 4, 2026, 06:00 PM
open_in_newAccess Control — Source Codesha256:f8009d6712b4...
Score History
—
Automated pipeline dimension update