Signed/unsigned arithmetic confusion
GMX v2 (GMX Synthetics)'s assessment for RD-F-018 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Solidity 0.8.29 provides built-in overflow/underflow revert, equivalent to SafeMath. No confirmed signed/unsigned confusion finding in any public audit report for v2. Guardian's 84 researcher-weeks of pre-launch coverage included arithmetic paths.
Sources #
- GitHubGMX Synthetics hardhat.config.tshardhat.config.ts - solc 0.8.29 with built-in overflow protectionretrieved 2026-05-05
Methodology #
Determine whether signed-integer conversions or comparisons where unsigned was intended exist in the deployed bytecode/source.
See the full factor methodology and distribution across all protocols →
rubric_version v1.7.0 protocol gmx-v2 factor RD-F-018 score green collected_at 2026-05-05 11:15:06