Skip to content

Added new proposal for security reviews of core network components#410

Open
daravep wants to merge 2 commits into
canton-foundation:mainfrom
daravep:da_security_reviews_grant
Open

Added new proposal for security reviews of core network components#410
daravep wants to merge 2 commits into
canton-foundation:mainfrom
daravep:da_security_reviews_grant

Conversation

@daravep

@daravep daravep commented Jun 2, 2026

Copy link
Copy Markdown
Contributor

Development Fund Proposal Submission

Proposal file: proposals/2026-06-DA-Security-Reviews-of-Core-Canton-Network-Components.md


Summary

This proposal outlines a comprehensive initiative to harden the core infrastructure of the Canton Network through rigorous internal reviews and independent third-party security audits.

The initial batch targets several critical components essential for institutional adoption and network resilience based on their importance and due to recent changes. By identifying and remediating vulnerabilities within a standardized, repeatable workflow, this initiative aims to mitigate evolving security threats, enhance public trust, and provide the formal certifications required by large-scale commercial institutions. The effort is scheduled largely for completion by EOY 2026 to Q1 2027, ensuring the network remains secure and protocol-compliant as it scales.


Checklist

  • Proposal file added under /proposals/
  • Milestones and funding amounts defined
  • Acceptance criteria included
  • Alignment with Canton priorities described

@github-actions

github-actions Bot commented Jun 2, 2026

Copy link
Copy Markdown

Champion identified Digital Asset

The committee will verify this champion during review.

@github-actions

github-actions Bot commented Jun 2, 2026

Copy link
Copy Markdown

@daravep, your proposal is missing a Special Interest Group (SIG) label. Adding the right SIG label ensures the relevant domain experts can find and review your proposal, Check more about SIGs.

Please add one of the following labels to your PR Description or include the label name in your proposal:

  • attestor-pools-daos-multisig
  • canton-apis
  • canton-protocol-multi-synchronizer
  • daml-tooling
  • dapp-integration
  • dar-app-management
  • defi-liquidity
  • defi-protocols
  • financial-workflows-composability
  • global-synchronizer-scaling
  • node-deployment-operations
  • onchain-governance
  • party-portability-data-resilience
  • regulatory-compliance
  • token-asset-standards
  • tokenomics
  • wallet-apps

Not sure which one fits? Pick the closest match to your proposal's domain.

@shaul-da shaul-da self-assigned this Jun 3, 2026
@shaul-da shaul-da moved this from Incoming to Ready for Vote in Dev Fund Incoming Jun 3, 2026
@hythloda hythloda moved this from Ready for Vote to Voting Live in Dev Fund Incoming Jun 4, 2026
@hythloda hythloda moved this from Voting Live to Approved in Dev Fund Incoming Jun 11, 2026
- **Estimated Effort:** 8PW
- **Selected Independent Auditor**: RFQ

### Milestone 2: _(SCAN) Scan_

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
### Milestone 2: _(SCAN) Scan_
### Milestone 11: _(SCAN) Scan_

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

Status: Approved

Development

Successfully merging this pull request may close these issues.

6 participants