Audits & Security
Last updated
Last updated
At zkSwap Finance, we place a paramount emphasis on the security of our code and the safety of user funds. We recognize the pivotal role these elements play in establishing trust and fostering a secure environment for our users. To achieve this objective, we have implemented a stringent approach encompassing multiple audits and robust security measures.
All contracts are VERIFIED on zkSync Explorer and Era.zkSync.Network All Audits: zkSwap Finance Github Certik Audit: Report
Our platform is undergone comprehensive audit conducted by Certik, a renowned security auditing firm. The results of this meticulous evaluation gives us a code security category score of 95/100, positioned us in the top of audited projects, attesting to the high level of security we maintain.
Certik's audit is widely acknowledged and esteemed in the blockchain and cryptocurrency industry. Their exhaustive review process involves a careful examination of our smart contracts, codebase, and overall system architecture. Through this rigorous assessment, we have showcased our unwavering commitment to upholding the highest standards of security and reliability for our users.
For more details: Certik Audit Report Certik Skynet: https://skynet.certik.com/projects/zkswap-finance
zkSwap Finance underwent three comprehensive audits conducted by Cyberscope.io, covering Token contracts, Farm Contracts, and DAO Staking Pool contracts. The audits yielded commendable results, with ZERO critical or medium findings, reflecting the robust security measures implemented by Zkswap Finance. This provides transparency and accessibility for stakeholders and shows our commitment to security, instilling confidence in users and the broader community about the safety and reliability of our decentralized finance (DeFi) platform.
For your information, Cyberscope is a prominent authority in blockchain security auditing, standing out as a leading service provider in the crypto industry. Renowned for its audits with launchpads such as PinkSale, Unicrypt, and DxSale. Cyberscope's commitment to thorough auditing reinforces its role as a key player in promoting the integrity and reliability of blockchain projects in general and zkSwap Finance in particular.
For more details: Cyberscope Audit Report Cyberscope security platform: https://www.cyberscope.io/audits/zkswap-finance
SolidProof is a leading German-based crypto auditing firm that specializes in smart contract security and functionality. Established in 2020, the company offers comprehensive auditing services, including structural analysis, static analysis, manual code review, and live environment testing. SolidProof's experienced team follows rigorous protocols to identify vulnerabilities, enhance code quality, and optimize gas utilization, providing clients with detailed audit reports and certificates to showcase the legitimacy of their projects.
Detailed Report: https://github.com/solidproof/projects/tree/main/2024/Zkswap%20Finance
SolidProof TrustNet: https://app.solidproof.io/projects/zkswap-finance
Vital Block offers an extensive security evaluation for smart contracts and blockchain code, pinpointing vulnerabilities and suggesting effective solutions. The company also deliver a professional, thorough, swift, and easily comprehensible smart contract security audit. Vital Block's approach involves in-depth, penetrative analyses encompassing static, manual, automated, and intelligent methods to ensure comprehensive coverage.
Detailed Report: Vital Block Github
MythXβ’ is a premier automatic security analysis service for Ethereum smart contracts by ConsenSys Software Incβ’. Its mission is to ensure development teams avoid costly errors and make smart contracts more secure and trustworthy.
MythXβ’ passed badge:
mainnet-contracts: https://github.com/ZkSwapFinance/mainnet-contracts
zf-periphery: https://github.com/ZkSwapFinance/zf-periphery
All MythX audit reports: https://github.com/ZkSwapFinance/Audit-Reports
zkSwap Finance recently underwent a meticulous audit conducted by Bail Security, Bailsec.io, focusing on the DAO Staking Pool v2 contract. The audit resulted in commendable findings, with identified bugs promptly addressed. These outcomes underscore the robust security measures embedded within Zkswap Finance, fostering transparency and accessibility for stakeholders. This underscores our unwavering commitment to security, bolstering user and community confidence in the safety and reliability of our Swap2Earn decentralized finance (DeFi) platform.
BAIL Security, known as Bailsec.io, is a leading blockchain security firm specializing in smart contract audits. With a focus on ensuring the integrity of decentralized projects, Bailsec.io conducts thorough evaluations using manual reviews, automated analysis, and penetration testing. Their structured audit process, coupled with experienced auditors, aims to provide clients with insights into potential vulnerabilities and recommendations for secure deployments in the blockchain space.
Detailed report: Bailsec Audit Report
Utilized for safeguarding the platform's smart contracts, Timelock Controllers and Multisig Wallets serve to introduce delays in actions by the contract owner, showcasing commitment and mitigating risks within the realm of DeFi.
Timelock 24 hours: Delay Transaction 24 hours. Utilized for the ZF Farm, Treasury, Team Fund, Operation & Marketing Fund, to manage any possible changes.
Timelock 48 hours: Delay Transaction 48 hours. Utilized for the Factory, ZF Token, yZF DAO staking pool, ZF Contribution Reward Pool, TGE Participants Rewards Pool to manage any possible changes.
Timelock 7 days: Delay Transaction 7 days. Utilized for the ZF/ETH Initial Liquidity contract to manage any possible changes.
Multisig Wallets are used to control the above timelock controllers and mitigate the risk of any private key leakage.