Skip to content

Penetration Testing Audit Report #330

@supra-yoga

Description

@supra-yoga

Description

Rektproof pentesting team has completed auditing all Move Smart Contracts under the Supra Framework. Below are the audit details and the issues reported that need to be patched as of 11-02-2026:

1st Audit details:
Date: 29-05-2025
Tag: https://github.com/Entropy-Foundation/aptos-core/releases/tag/aptosvm-v1.16_supra-v1.6.4
Report: L1_Audit_Report__Supra_Framework.pdf

2nd Audit details:
Date: 12-12-2025
Tag: https://github.com/Entropy-Foundation/aptos-core/releases/tag/aptosvm-v1.16_supra-v1.6.4
Report: L1_Audit_Report__Supra_Framework.pdf

The following spreadsheet triages the reported issues: https://docs.google.com/spreadsheets/d/16I_l3azhyp3eaaGBN75gTku1rgIrtUTXGPwjeVZAgio/edit?gid=1251725266#gid=1251725266

Sub-issues

Metadata

Metadata

Assignees

Labels

Type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions