Skip to main content

Current Audit Status

Audit in Progress

Zenland V2 smart contracts are undergoing security review.

Security Practices

Code Quality

  • Solidity 0.8+ — Built-in overflow protection
  • OpenZeppelin contracts — Battle-tested libraries
  • Comprehensive tests — Unit, integration, fuzz, invariant
  • No floating pragma — Exact compiler versions

Review Process

Before deployment:
  1. ✅ 100% test coverage target
  2. ✅ Internal security review
  3. ✅ Automated vulnerability scanning
  4. 🔄 External audit by reputable firm
  5. 📋 Testnet deployment and testing
  6. 📋 Mainnet deployment

Audit Reports

Once complete, audit reports will be published here:

Known Limitations

The following are known behaviors, not bugs:
Tokens that charge fees on transfer will cause escrow amount mismatches. Only use whitelisted stablecoins.
Tokens that change balance over time (like stETH) are not supported.
This is intentional behavior for 2-of-2 escrows, not a vulnerability.
Once created, escrow rules cannot change. This is a security feature.

Vulnerability Disclosure

Found a security issue? Please report responsibly.
Do NOT disclose vulnerabilities publicly before they are fixed.

How to Report

  1. Email: [email protected]
  2. Include:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact assessment
    • Your suggested fix (optional)

What to Expect

Bug Bounty (Coming Soon)

We’re planning a bug bounty program with rewards based on severity: Exact amounts TBD. Check back for official program launch.

Security Contacts

Report Vulnerability

General Security Questions

Ask in Telegram