Project Information
CATEGORY
MetaMask Snaps
NETWORK
Kleros
WEBSITE
https://kleros.io/
DESCRIPTION
From Jun. 12, 2023 to Jun. 14, 2023, Kleros engaged Veridise to review the security of their Kleros Scout, a MetaMask snap that will display metadata from Kleros Curate registries before a user confirms a transaction with MetaMask. This information includes details such as: whether the address has an associated project, whether the current domain is “verified” for that address, and whether the address is a token (and if it is, display its name and symbol). Veridise conducted the assessment over 6 person-days, with 2 engineers reviewing code over 3 days. The auditing strategy involved a tool-assisted analysis of the source code performed by Veridise engineers as well as extensive manual auditing.
Audit Report
SCOPE
The scope of this audit is limited to the packages/snap folder of the source code provided by the Kleros Scout developers, which contains the smart contract implementation of the Kleros Scout.