Skip to content

Security: RioTheGreat-ai/agentfund-skill

Security

SECURITY.md

Security

⚠️ Disclaimer

This contract is UNAUDITED. Use at your own risk.

The AgentFund Escrow contract has been:

  • ✅ Tested on Base mainnet with real transactions
  • ✅ Code reviewed internally
  • ❌ NOT professionally audited by a third party

Recommendations

  1. Start small - Test with small amounts first
  2. Verify transactions - Always verify transaction data before signing
  3. Report issues - If you find a bug, please report it via GitHub issues

Known Limitations

  • Centralized fee control - Platform owner can adjust fee up to 10% max
  • No pause mechanism - Contract cannot be paused in emergency
  • Single chain - Only deployed on Base mainnet

Roadmap Security Improvements (v2)

  • Professional smart contract audit
  • Multi-sig admin control
  • Emergency pause functionality
  • Upgrade path via proxy pattern

Bug Bounty

We welcome responsible disclosure. Contact: [Create GitHub issue with "security" label]

Contract Verification

The contract source code is available at:


Last updated: 2026-02-03

There aren’t any published security advisories