BlackHartBlackHart
D1

Access Control

Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.

Weight 18%92% confidence
92
Excellent
info

How This Score Is Built

Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.

+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative

Score Composition

-8

Minimal admin surface (fee setting only, capped)

Strong negativeopen_in_newSource CodeMay 4, 2026
+23

Transient storage lock eliminates reentrancy class

Strong positiveopen_in_newSource CodeMay 4, 2026
+23

Flash accounting enforces within-tx balance invariants

Strong positiveopen_in_newSource CodeMay 4, 2026
+23

58 access control checks across 246 total checks (23.6% check density)

Strong positiveopen_in_newSource CodeMay 4, 2026
+23

All core PoolManager functions are view/pure (6 functions)

Strong positiveopen_in_newSource CodeMay 4, 2026

Evidence Chain (2 files)

GitHub APIMay 17, 2026, 06:58 PM
open_in_newGitHub (/)
sha256:36d1d3a4f199...
BlackHart AnalysisMay 4, 2026, 10:00 PM
open_in_newAccess Control — Source Code
sha256:80d7f8f31bbf...

Score History

Automated pipeline dimension update
Automated pipeline dimension update