top of page
Writer's pictureFYEO

FYEO performed a secure code assessment of the Streamflow Finance protocol


FYEO performed a secure code assessment of the Streamflow Finance protocol
Streamflow Finance protocol

Next up: FYEO starting second StreamFlow Finance audit on May 22, 2023.


What is Streamflow Finance?

Streamflow offers an efficient, secure and easy-to-use way of managing token vesting and payroll through its payments streaming feature. The app's configurable features allow for streamlined payments to investors, employees and service providers with unique options such as automatic withdrawals and cancellable contracts. This bankless and paperless system saves time and money by only requiring a decentralized wallet account and recipient wallet addresses.


The FYEO Process

When FYEO performs an assessment, we focus on the code committed at a specific time when the code base is feature complete.


Our goal is to give our clients the following:

  • A better understanding of its security posture and help them identify current and future risks in its deployed chain & contract infrastructure.

  • An opinion on what security measures are in place regarding maturity, adequacy, and efficiency.

  • Identify potential issues, including loss of funds scenarios, and include improvement recommendations based on the result of our assessment.

  • Give the development team a better understanding of writing and maintaining more secure code. The incremental increase of security is part of the overall increased quality of the project.

Findings and Report

During the security assessment, we uncovered:

  • One finding with a HIGH severity rating

  • Seven findings with an INFORMATIONAL severity rating.

Once notified, the Streamflow team was quick to address and remediate these findings. You can find a public version of the report available below. We look forward to our work on the next audit starting Monday!







Comments


bottom of page