description |
---|
Audits of Gnosis Chain and Related Infrastructure |
{% hint style="info" %} Most Audits were completed prior to the rebrand from xDai Chain to Gnosis Chain, and will refer to the xDai chain as well as the STAKE token, the previous governance token of the chain (the chain is in the process of transferring to GNO-only security). {% endhint %}
Completed: October 1, 2021
Conclusion: During the assessment one critical issue was found and fixed following the intermediate report. The remaining issues were of low severity and were fixed accordingly. The communication with the team was very responsive.
Audit Report: https://chainsecurity.com/security-audit/poa-network-stake-beacon-chain-sbc-deposit/
Completed: September 7, 2021
Conclusion: The assessment uncovered a number of potential issues which were resolved by the team. Two additional issues were acknowledged and largely mitigated by the team, and the original severities are no longer applicable. These upgrades to the Omnibridge provide additional functionality which will be implemented in the future.
- Contracts: https://github.com/poanetwork/omnibridge
- Audit Report
{% file src="../.gitbook/assets/ChainSecurity_POA_Network_Omnibridge_Version_6_0_audit.pdf" %} ChainSecurity OmniBridge v6.0 {% endfile %}
Completed: June 25, 2021
Conclusion: The assessment uncovered several issues which were addressed or acknowledged by the team. No "critical" severity security flaws preventing continued usage or launch of contracts in future contexts were found. 0 Critical Issues, 1 High Risk Issue Accepted, 4 Medium Issues Accepted/Acknowledged, 4 Low Risk Issues Accepted/Acknowledged.
- Contracts: https://github.com/poanetwork/posdao-contracts
- Audit Report in repo: https://github.com/poanetwork/posdao-contracts/blob/master/audit/ChainSecurity/report.pdf
{% embed url="https://chainsecurity.com/security-audit/poa-network-posdao/" %}
Completed: April 27, 2021
Conclusion: 0 Critical or High Risk Issues, 2 Medium Issues Accepted, 3 Low Risk Issues Accepted/Acknowledged
Contracts: https://github.com/poanetwork/omnibridge
{% embed url="https://chainsecurity.com/security-audit/poa-network-omnibridge/" %} ChainSecurity Audit Report {% endembed %}
Completed: November 6, 2020
Conclusion: No high and medium risk issues found, all low risk issues addressed.
Contracts: Revised in version 5.5.0-rc0 to address audit. https://github.com/poanetwork/tokenbridge-contracts/releases/tag/5.5.0-rc0
{% hint style="success" %} Quantstamp Security Audit PDF {% endhint %}
Completed: August 3, 2020
Conclusion: All high/medium/low risk issues resolved.
{% file src="../.gitbook/assets/XDai Easy Staking - Final Report.pdf" %} Easy Staking Final Audit Report by Quantstamp {% endfile %}
Completed: January 8, 2020
Conclusion: All high risk issues resolved and low risk issues addressed. More information available in this post.
Contracts: Revised in version 3.3.0 to address audit. https://github.com/poanetwork/tokenbridge-contracts/releases/tag/3.3.0
{% hint style="success" %} Quantstamp TokenBridge Security Audit PDF {% endhint %}
Completed: June 24, 2020
Conclusion: No High or Medium risks, all low and informational risks addressed
{% hint style="success" %} Quantstamp STAKE Security Audit PDF {% endhint %}
In the original audit, the working name for the staking token was DPOS. This changed to STAKE.
DPOS Audit Completed: September 5, 2019
Conclusion: All risks resolved.
Contracts: Version 1.0.1 addressed items in audit.
https://github.com/xdaichain/stake-token/releases/tag/v1.0.1
{% hint style="success" %} Quantstamp DPOS Security Audit PDF {% endhint %}
The token constitutes a VFA in terms of Maltese law. Please contact [email protected] to request access to the document.
Completed: August 2019
Conclusion: All issues fixed or addressed. Due to scalability concerns, teams created a new methodology to accumulate and later “pull” their stakes and rewards instead of the “push” strategy as implemented in the audited version of the contracts.
Contracts: Version 0.1.0 addresses issues present in audit. https://github.com/poanetwork/posdao-contracts/releases/tag/v0.1.0
{% hint style="success" %} POSDAO v1 Consensus Contracts audit {% endhint %}