DeFiSafety Profile picture
Jun 20 9 tweets 4 min read
1/9 @dYdX has well integrated itself as a leader in process quality. A high score is backed up by great real-world crisis management and all this leads us to a strong update into our records.
2/9 dYdX's public team does an excellent job at explaining their testing methodologies. Testnet deployments, perfect code coverage and scripts for users to replicate the tests themselves are all documented.
3/9 dYdX has also shown a fantastic commitment to good audits being conducted each time code is deployed. This is considerable given that they've literally launched their own L2.
4/9 They also take trader considerations into account such as front-running. Indeed, they migrated networks to significantly mitigate this issue that plagues L1 Dexes.
5/9 We'd like dYdX to more clearly indicate which contracts are controlled by governance. Change capabilities are identified, but this doesn't precisely translate to users which contracts are subject.
6/9 While there is documented proof of dYdX paying out $500K in a bug bounty, there's only documentation offering up to $50K. We'd like this to be refreshed - see the report for clarification.
7/9 All in all, dYdX has done a good job at explaining to users how their protocol functions. They've also done a good job at running tests and ensuring reproducibility.
8/9 They know their userbase well and think about different issues (such as front-running) and mitigate them. They aim high with a custom L2 so we're excited that they show such good process.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with DeFiSafety

DeFiSafety Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @DefiSafety

Jun 21
(1/25) @avalancheavax has done a good job in burying us with proof of good process quality. While some areas are in need of improvement, they’re only bested by Ethereum in terms of secure development practice. Let’s hit the slopes and figure out why 🎿🎿🎿 → Image
(2/25) @avalancheavax has never gone down. This is impressive given the record of other smart contract L1s. The network has experienced massive load and it has met the demand - this is critical for any chain.
(3/25) Avalanche is also impressively distributed. With over 3000 nodes validating and some 3500 nodes archiving, Avalanche is the second most decentralized that we’ve come across (in terms of node count).
Read 25 tweets
Jun 10
(1/7) 🚀 We have a new top 3 arrival within our PQR high scores. @AngleProtocol, specialized in stablecoins pegged to the Euro, issues spectacular documentation and offers minute details as to every angle of their protocol. #StableCoin
(2/7) Software documentation is a hard process to go through and siding the likes of Synthetix, AAVE, Liquidity is nothing short of an accomplishment. Great testing suite, spot-on smart contract documentation, clear admin controls, What does Angle not cover..? Nothing, it seems.
(3/7) One strong and unique perspective displaying Angle's acuteness in smart contract documentation is the outlining of immutable AND mutable references when discussing change capabilities, followed by software functions.
Read 7 tweets
Jun 9
1/21 Tempted by $USDD to bridge to @trondao? That supple and bouncy claimed 30% APY offering comes with a few strings attached. Let's dig in and make sure you don't regret it the morning after —>
2/21 Let's start with nodes: TronScan claims some 6000+ operate. This is impressive! Ethereum doesn't have this many. However, when you look at their documentation, they use a 27 node "Super Representative" system. What this indicates to us is that 27 nodes validate.
Read 27 tweets
Jun 8
1/7 Bancor, or as @IamSuperMassive likes to call them "the (unkillable) cockroaches" of DeFi, keep up AND surpass their invincible process quality record. They've increased an impressive 6% from a base of 90% despite our review system growing more complex. Image
2/7 We have nothing but praise to say here. Flawless explanations for both developers and users relating to how the protocol functions, great audit hygiene, a delicious bug bounty offering ... we could go on. Truly outstanding work dears.
3/7 We're especially grateful that they clearly explain how @Bancor manages their ownership. This is critical information that users must know, and we are reassured that they are clear in expressing it.
Read 7 tweets
Jun 7
1/28 Due to repeated downtime, @solana has the second worst final technical risk score of the 15 chains that we have reviewed so far. Only @Ronin_Network has a lower score at this point. This is for a variety of reasons. 🫤
2/28 Firstly, Solana's base score is low. Despite a public software repository and some good documentation, their infrastructure relating to nodes is subpar.
3/28 There is only one node implementation (we will address this later), the updates are handled in a haphazard manner and there is no process for an archive node.
Read 29 tweets
Jun 6
1/5 Concocting the magic potions of #DeFi, Alchemix does not fail to provide the right recipes for its code documentation. With impeccable security, admin controls and documentation, the protocol is a great broom to ride through your DeFi wizardry.
Final score: a whopping 80%.
2/5 To support this high score, thorough audits and a high bug bounty reward proved to be the winning formula for this magic potion. Add into the (Alche)mix their straightforward smart contract change capabilities and ownership roles and you get yourself a valuable elixir.
3/5 The only points Alchemix lost for Gryffindor would have to be their testing suite. With no testnet or testing documentation, some may be warry of Alchemix' elixir. However, because of their beyond reasonable TtC ratio, DeFiSafety will make sure to stock up on them' potions.
Read 5 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us on Twitter!

:(