Audit Report
A structured review of a smart-contract codebase performed by a third-party security firm — typically Trail of Bits, OpenZeppelin, Spearbit, ConsenSys Diligence, Code4rena (competitive), or others. The report enumerates findings by severity (Critical, High, Medium, Low, Informational), identifies specific code locations, recommends remediations, and indicates which findings were addressed before publication. An audit is a snapshot of the code at the time it was reviewed: changes after the audit are not covered, and findings the auditors missed are not covered. Multiple audits from different firms reduce single-auditor blind spots but do not produce guarantees — major exploits have followed audits, sometimes from named top-tier firms.
Related terms
Every glossary term is educational only. Nothing on this page constitutes financial, investment, tax, or legal advice. Browse all 356 terms →