defirisk.co
rubric v1.7.0

Code complexity vs audit coverage

Spiko's assessment for RD-F-024 — scored yellow on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

EVM codebase is compact (Token.sol, Oracle.sol, PermissionManaged.sol, Minter.sol, Redemption.sol + extensions). ToB Oct-2023 covered pre-launch codebase. Post-audit additions: ERC2771 (Jan-2024), MultiATM (Jan-2026, ~220 LOC changes). Cairo: 3 contracts, Nethermind covered. Stellar: 5 contracts, Halborn covered. Qualitatively moderate complexity; MultiATM is unaudited complexity concern but non-core.

Sources #

Methodology #

Determine whether the cyclomatic complexity or LOC-per-audit-day ratio exceeds the curator-declared credibility threshold for the audit to be meaningful.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol spiko factor RD-F-024 score yellow collected_at 2026-05-15 22:52:13