Blockchain Audit Companies: The Startup Edition

gm all fellow tech enthusiasts and startup aficionados! As we journey forth in the pursuit of innovation, it has become paramount that we undergo an audit of our endeavors, my frens. This is especially true in relation to our investors. We embarked upon a holistic approach in tackling the Smart contract framework, requiring the assembly of pertinent Docs, video presentations, Github code, and, of course, a preliminary security audit.

Before it, after 6 months since launch, our blockchain developer ecosystem included the following:

  • Informal security audit
  • Meticulous documentation and lucid descriptions of our APIs, versions of our smart contract framework/developer docs
  • Impeccable recording of a video introduction/podcast
  • Cognizant utilization of GitHub with source code.
The comparison table below not for hearting – it was made as own research, relevant for May 2022 specific.
AuditorTypePriceCommentAlso audited
WatchPug1-day review, full audit$35krecommended for the first iteration;Code4rena participant
Pessimisticfull audit$18kquite cheap, recommended for the first iterationxdao
Hackenfull audit
BlockSecfull audit
Code4renabug bountyby choicenot so effective
Immunifybug bountyby choicepost-launch
Cmichel1-day review
ChainSecurityfull audit$200-300kCompound
MixBytesfull audit$50kwhat left of initial mix bytes (not recommended)Aragon
Statemindfull audit$25k per week; 1000 loc for 1 week;founded by mix bytes team. seems to be overpriced. small teamAragon
CertiKfull auditnot recommended, only static analysis & auto tests
Mudit Gupta

Oh boy, this topic was one doozy! I poured my heart, soul, and everything in between into it. I’m talking tears, sweat, and maybe even a bit of blood (not gonna lie, it got that intense – I wish I could say that I battled it out with some feisty blockchain developers, but alas, we actually got along quite swimmingly.) In the end, we went with Pessimistic.