Audits
I audited contracts for Kleros, CertiK, QuillHash and Nethermind. At Safe I coordinate third-party audits by Certora, Ackee, Nethermind and ack3, and commit the reports to the repositories.
Audits I performed
| Date | Client | Report (PDF) |
|---|---|---|
| Kleros | Kleros Liquid | |
| Kleros | Kleros Governor | |
| Kleros | Kleros GTCR | |
| Kleros | Kleros Escrow | |
| Kleros | Linguo | |
| Kleros | Realitio | |
| Kleros | Arbitrable Directory | |
| Kleros | Binary Arbitrable Proxy | |
| QuillHash | Golden Goose | |
| Kleros | Arbitrable Proxy | |
| CertiK | Super Token |
At Nethermind (September 2022 to June 2023) I did 15+ audits across Solidity and Cairo codebases. Nethermind's public reports from that period do not name individual auditors, so none are listed here.
Audits I coordinated as an engineer
Third-party audits of Safe contracts that I coordinated from the engineering side. I prepared the code for review, fixed the findings where the code was mine, and committed each report to its repository, linked below with the pull request that added it. In 2026 this included retroactive audits of earlier Safe contracts, among them one Nethermind engagement that covered Safe v1.3.0 and four modules.
| Date | Firm | Report (PDF) and pull request |
|---|---|---|
| ack3 | RealityVetoModule (#22) | |
| Nethermind | Safenet (#986) | |
| Certora | Policy Engine policies (#106) | |
| Certora | Policy Engine core (#106) | |
| Certora | Safenet Guard (#895) | |
| Nethermind | Safe v1.3.0, retroactive (#1120) | |
| Nethermind | ERC-4337 module v0.3.0 (#542) | |
| Nethermind | Allowances module v1.0.0 (#541) | |
| Nethermind | Passkey module v0.2.1 (#544) | |
| Nethermind | Recovery module v0.1.0 (#543) | |
| Certora | ERC-4337 module v0.3.0 (#540) | |
| Certora | Recovery module v0.1.0 (#545) | |
| Certora | Safe v1.3.0, retroactive (#1119) | |
| Certora | Safenet Beta staking (#164) | |
| Ackee | Safe v1.5.0 (#983) | |
| Certora | Safe v1.5.0 (#912) | |
| Certora | Safe v1.4.1 library contracts (#828) | |
| Certora | Passkey module v0.2.1 (#476) | |
| Ackee | Social Recovery Module (Candide) (#42) | |
| Ackee | SAFE token locking (#98) | |
| Certora | SAFE token locking (#98) |
Findings I fixed or documented: Safe v1.5.0 (#886 to #897) and v1.4.1 (#817), token locking (#94, #95), the ERC-4337 module (#539), the Safenet Guard (#862, #872), the Policy Engine (#100 to #104, #168, #169) and the RealityVetoModule (#21).
Email admin@remedcu.com about any report here or about a review of public code.