PROTOCOL SECURITY

SECURITY FEATURES

ARITHMIC is built security-first. Every component of the protocol — from oracle feeds to governance execution — is designed to be tamper-resistant, audited, and transparent.

BURNED ADMIN KEYS
There are no admin keys. Protocol ownership was renounced at launch — no individual or team can unilaterally pause, upgrade, or modify the core contracts.
MULTI-ORACLE NETWORK
12 independent price feed sources (Chainlink, Pyth, Band Protocol, Uniswap TWAP, and more). No single oracle can manipulate the peg trigger.
48-HOUR GOVERNANCE TIMELOCK
Every governance-approved change is subject to a mandatory 48-hour timelock. Users have a full 24-hour veto window before any parameter changes execute.
CIRCUIT BREAKERS
Automated circuit breakers halt minting and burning if oracle feeds show abnormal deviation or divergence — preventing cascading failures seen in earlier protocols.
DEPEG VAULT RESERVE
A protocol-owned reserve ($4.2M+) auto-deploys at any ±1.5% depeg event, providing a third-layer stability backstop beyond oracle-driven mint/burn and arbitrage.
FULLY OPEN SOURCE
All smart contracts are publicly verifiable on-chain. Source code is published on GitHub and pinned on IPFS for permanent, censorship-resistant access.

INDEPENDENT SECURITY AUDITS

ARITHMIC has undergone three independent security audits. All critical and high-severity findings were resolved before mainnet deployment.

AUDIT #1 — CORE CONTRACTS

Full review of the algorithmic peg mechanism, oracle integration, and mint/burn smart contracts.

✓ PASSED — 0 CRITICAL

AUDIT #2 — GOVERNANCE MODULE

Independent review of the DAO governance contracts, timelock, and proposal execution logic.

✓ PASSED — 0 CRITICAL

AUDIT #3 — DEPEG VAULT & BRIDGE

Security review of the Depeg Vault reserve and multi-chain bridge architecture.

✓ PASSED — 0 CRITICAL

FOUND A VULNERABILITY?

Our bug bounty program rewards responsible disclosure. Earn up to $100K for critical findings.

VIEW BUG BOUNTY