DeFi Security AllianceRequest an audit
Menu

DeFi Security Alliance library

Smart contract security reports

Browse 33 resources: 6 original research reports, 4 archived documents, and 23 legacy company analyses.

Find a report

33 resources shown.

6 original reports · September 2026

Evidence reviews written by DSA

Five provider dossiers and a comparative study. Each includes original observations, sources, limitations, a PDF, and a data download. Independent expert review is pending.

4 documents

Archived source documents

These historical documents retain their original publication dates. Each has a local PDF and source details.

23 companies

Legacy company analysis archive

Archived DSA company pages. Their page-check date is not a fresh technical assessment. See how sources, labels and corrections are handled in the directory methodology.

  1. 0xGuard audit evidence: remediation without a pinned revision

    An OpenSwap finding marked fixed gives a reviewer a useful follow-up question: which exact revision implements the change? A project name and report date locate a document, but they do not uniquely identify the deployed bytecode. The MiniVerse example covers a different project and network; it should not be folded into a single undated claim about every deployment.

    Type
    DSA company analysis
    Editorial revision
    Source status
    Source-based editorial revision; no technical rating
    Read 0xGuard audit evidence: remediation without a pinned revision
  2. BlockSAFU Analysis Report

    Research of the audit company Block Safu. The DSA expert team has performed an in-depth analysis of the Block Safu audit company. Read the full report

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read BlockSAFU Analysis Report
  3. Certora Analysis Report

    Explore our comprehensive review of Certora on DeFi Security Alliance, offering key insights to guide your smart contract auditor selection.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Certora Analysis Report
  4. ChainSecurity Audit: Insights & Analysis

    With a solid track record since 2017, ChainSecurity has been auditing smart contracts for blue-chip DeFi protocols, central banks, and Web3 projects.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read ChainSecurity Audit: Insights & Analysis
  5. Coinsult Audit: Insights & Analysis

    Discover Insights: Analytical Report on Coinsult Audit Firm for Comprehensive Evaluation

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Coinsult Audit: Insights & Analysis
  6. ContractChecker Audit: Insights & Analysis

    ContractChecker will help you with everything from developing and auditing smart contracts to creating Launchpad, NFT Marketplaces and unique DApps. The ContractChecker Dapp also has utilities such as Multi Sender, Locker and Private Sale available to eve

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read ContractChecker Audit: Insights & Analysis
  7. ContractWolf Audit: Insights & Analysis

    ContractWolf provides smart contract audits, security and development services to ensure the safety and integrity of blockchain projects.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read ContractWolf Audit: Insights & Analysis
  8. Cyberscope Solana audit evidence: unresolved initial findings

    The UnclaimedSOL example is an initial Solana/Rust report with a named revision and file scope. It records one medium and six minor findings as unresolved in that version. A later project may have changed the code; the initial artifact alone cannot establish a fix. Request the final report and compare its scope with the proposed deployment.

    Type
    DSA company analysis
    Editorial revision
    Source status
    Source-based editorial revision; no technical rating
    Read Cyberscope Solana audit evidence: unresolved initial findings
  9. Cyfrin Analysis Report

    Cyfrin bring smart contract audits, tools, and education to hundreds of thousands of users, partners, and blockchain protocols.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Cyfrin Analysis Report
  10. DeFiMoon Audit: Insights & Analysis

    Discover DeFiMoon, a trusted auditing company with a growing portfolio. Their tools, media coverage, and expertise ensure your DeFi projects are secure.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read DeFiMoon Audit: Insights & Analysis
  11. Get Insights: Analytical Report on Certik Audit Company

    DSA analysis of CertiK, including the company overview, listed services and evaluation criteria.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Get Insights: Analytical Report on Certik Audit Company
  12. HashEx audit evidence: recheck commits and residual findings

    The ApeSwap IAZO artifact connects an initial revision to a recheck revision. Its outcome categories include resolved, partially resolved and acknowledged items. An acknowledged finding can remain relevant to a release decision even when a project accepts it. Read the affected behavior and compensating assumptions before treating the report as a closed checklist.

    Type
    DSA company analysis
    Editorial revision
    Source status
    Source-based editorial revision; no technical rating
    Read HashEx audit evidence: recheck commits and residual findings
  13. Halborn Analysis Report

    Explore our comprehensive review of Helborn on DeFi Security Alliance. Halborn is a blockchain security firm with full-stack security solutions.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Halborn Analysis Report
  14. Hashlock Analysis Report

    Hashlock: Pioneering in blockchain security research to foster safe web3 innovation, reflecting core values.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Hashlock Analysis Report
  15. Hacken audit evidence: scope fields do not prove fixes

    The existing DSA API study found 1,042 smart-contract records with both repository and commit fields nonempty in a dated subset of 1,123. Field presence is not the same as a valid commit, reachable source or deployment match. The study separately recorded placeholder values and syntactic commit checks. Keep those tests distinct from a technical review of the code.

    Type
    DSA company analysis
    Editorial revision
    Source status
    Source-based editorial revision; no technical rating
    Read Hacken audit evidence: scope fields do not prove fixes
  16. ImmuneBytes Analysis Report

    ImmuneBytes - a blockchain security audit firm with the goal of making the Web3 space more secure to build through innovative and effective solutions.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read ImmuneBytes Analysis Report
  17. PeckShield analysis: limits of an archived audit quote

    That observation cannot price a different codebase. A protocol with upgrade controls, external dependencies or a remediation round presents a different scope. Ask for the included contracts, excluded dependencies, reviewer roles and retest terms before comparing proposals. The bounded public-source pass did not accept a client report for this profile; that records the limit of this review, not an absence of PeckShield reports.

    Type
    DSA company analysis
    Editorial revision
    Source status
    Source-based editorial revision; no technical rating
    Read PeckShield analysis: limits of an archived audit quote
  18. QuillAudits: Analytical Report of the Leading Audit Company

    Discover the QuillAudits, a leading audit company, through our in-depth analysis.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read QuillAudits: Analytical Report of the Leading Audit Company
  19. RugFreeCoins Analysis Report

    A review of the audit company Rug Free Coins. The DSA expert team has performed an in-depth analysis of the RugFreeCoins audit company. Read the full report.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read RugFreeCoins Analysis Report
  20. Sigma Prime Analysis Report

    Sigma Prime is a blockchain security and research firm, born with the vision of conducting the comprehensive security research and applying it to the Blockchain industry to boost safe innovation.

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Sigma Prime Analysis Report
  21. SolidProof Audit: Insights & Analysis

    SolidProof offers Smart Contract Audits, KYC support, and marketing solutions for diverse crypto markets, guiding and supporting cryptocurrency projects

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read SolidProof Audit: Insights & Analysis
  22. Source Hat audit evidence: dated updates and private scope

    The Hyperbolic Protocol page records dated updates around a named private-repository revision. The private scope is a material limit: a reader can inspect the published findings but cannot independently reproduce the full source comparison from the public page alone. Ask for authorized access to the reviewed revision before making a deployment-match claim.

    Type
    DSA company analysis
    Editorial revision
    Source status
    Source-based editorial revision; no technical rating
    Read Source Hat audit evidence: dated updates and private scope
  23. Zokyo Audit: Insights & Analysis

    Zokyo secures, builds, and funds legendary Web3 companies

    Type
    DSA company analysis
    Archive page checked
    Source status
    Legacy editorial material; technical review not assessed
    Read Zokyo Audit: Insights & Analysis