defirisk.co
rubric v1.7.0

Divide-before-multiply pattern

Sky Lending (formerly MakerDAO)'s assessment for RD-F-016 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

MCD uses RAY (10^27) / WAD (10^18) fixed-point arithmetic with multiplication before division in all price-critical paths. No divide-before-multiply pattern found in ToB/PeckShield audits.

Sources #

  • URL
    https://github.com/makerdao/mcd-security/blob/master/Audit%20Reports/TOB_MakerDAO_Final_Report.pdfretrieved 2026-04-27
  • URL
    https://github.com/sky-ecosystem/dss/blob/master/src/vat.solretrieved 2026-04-27

Methodology #

Determine whether Slither's `divide-before-multiply` detector fires on the deployed verified source.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol sky-lending factor RD-F-016 score green collected_at 2026-04-28 00:43:18