defirisk.co
rubric v1.7.0

Divide-before-multiply pattern

Orca's assessment for RD-F-016 — scored gray on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

Slither divide-before-multiply detector is EVM-only and cannot run on Rust/BPF. The Whirlpool math module uses Q64.64 fixed-point arithmetic audited by Neodyme (2022) and OtterSec (2024). No findings on integer ordering reported in available summaries. Structurally not assessable via the specified toolchain.

Sources #

Methodology #

Determine whether Slither's `divide-before-multiply` detector fires on the deployed verified source.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol orca factor RD-F-016 score gray collected_at 2026-05-16 02:39:16