WHAT YOU GET
Pentesting backed by published research
Different systems call for different techniques. We pick the mix that fits yours.
Snaps sandbox research
We’ve done extensive research into MetaMask’s Snaps sandboxing environment, and partner with MetaMask for ongoing security research.
Snap audits
We’ve audited more than half a dozen Snaps from teams like Nocturne, Bayan, Drift, and Algorand.
Web2 bugs in web3 apps
Our “Web2 bug repellant instructions” post walks through web2 bugs found in web3 apps.
Authentication flaws
Our research on subverting Web2 authentication in Web3 covers OAuth logic exploits and Supabase misconfigurations.