Freelance/Marketplace
Name | Website | Description |
Code Arena | code4rena.com | Auditors compete to keep high severity bugs out of production. |
Sherlock | sherlock.xyz | Combining standard & competition based audits. |
Finaudit | findaudit.xyz | Smart contract audit telegram linking projects with auditors. |
Code 4rena is probably the most community driven audit shop there is. It is divided into roles:
Warden
The Wardens make up the core of the code 4rena. They are the auditors, who actually find vulnerabilities and bugs in the code. Wardens compete, climb the ranks and get paid to flag issues with the code. Code 4rena offers a robust profile system that allows wardens to make a name for themselves and even solicit solo audits.
Judge
Scout
The Scout is a role to ensure the audit competition runs smoothly. That’s distinct from a Judge, who determines the contest winners based on the quality of submitted code. The scope of the Scouts is much broader than other roles. Scouts prep the codebase and make sure everything is working correctly before the contest starts which could mean compiling tests, fixing compilation errors, and ensuring dependencies are installed properly. The Scout role requires attention to detail and problem-solving skills, as they may encounter various issues that need to be addressed before the competition can start. Scouts act as the behind-the-scenes support team, ensuring a fair contest experience for all participants.
Traditional
Name | Website | Description |
Consensys Diligence | consensys.io | One of the longest running and most reputable smart contract audit shops connected with Ethereum founders. |
OpenZeppelin | openzeppelin.com | These experts in auditing have also built foundational standards and security frameworks for web3 code. |
Ackee Blockchain Security | ackeeblockchain.com | Czech Republic-based audit shop with considerable track record. Should offer better rates but still very high quality audits compared to Consensys or OpenZeppelin. Past clients include 1inch, Trezor and Layer Zero. |
Automated
Chatgpt Auditors | chatgpt.com/gpts | Not as reliable as human auditors, but can be a useful troubleshooting tool and audit starting point. |
Chaingpt | app.chaingpt.org | Specialized crypto LLM which has smart contract audit features. Premium features are possible through defi credits system. |