Skip to main content

Security Philosophy

Our top priority is to systematically mitigate and reduce potential risks through a multi-layered security approach:
  • In-Depth External Audits
    • Collaborating with leading security researchers to identify potential vulnerabilities, logical edge-case errors, and structural inefficiencies
  • Continuous Monitoring
    • Ongoing on-chain tracking and alerting framework deployments to watch over smart contract and application interactions post-launch
🔒 Security Reporting: Found a potential vulnerability? Please do not open a public issue. Reach out directly to our security team at security@digitalasset.com.

Completed Audits

Below is the chronological overview of our completed technical security reviews. Click on any section to view the specific audit scope and access the official PDF assessment reports.

Overview

CertiK conducted a security assessment focused on the Daml smart contracts that implement the xReserve functionality on Canton Network. The review centered on workflows that coordinate attestation for deposits/withdrawals, authorization controls, and USDCx lifecycle management, which also included the whole DA Registry set of functionalities.

Scope Details

  • Daml: Registry & xReserve Contracts
  • Off-chain components: xReserve Backend
Download Executive Summary (PDF)

Overview

CertiK completed a comprehensive security assessment for Digital Asset, evaluating the Daml smart contracts for the Digital Asset Registry alongside Off-Chain components across both frontend and backend repositories. Employing a methodology of static analysis, manual review, dynamic execution testing, and architectural threat modelling, the audit evaluated system-critical components, including utility APIs, credential workflows, operator automation, contract archival and reward processing interacting with the Canton ledger.

Scope Details

  • Daml: DA Registry Smart Contracts
  • Off-chain components: DA Registry Frontend & Backend