Audits
Battle-Tested Security
Zest V2 has undergone multiple comprehensive security audits, building on V1's foundation as one of the most thoroughly reviewed protocols on Stacks. The V2 architecture includes:
Enhanced position validation with Risk Group transition protection
Improved pausability mechanisms with grace periods for emergency responses
Robust health check systems that validate positions before and after every operation
Time-based precision using block timestamps for accurate interest and oracle calculations
Zest Protocol V2 has been audited by:
Clarity Alliance - Leading Clarity security firm
Asymmetric Research - Blockchain security specialists
Greybeard Security - Pair of senior white hat web3 SRs: 100proof and neumo
Audit Reports
Clarity Alliance - Zest Protocol v2 - October 23rd, 2025
Clarity Alliance - Zest Protocol v2 Upgrade - December 3rd, 2025
Greybeard Security - Zest Protocol v2 - December 4th, 2025
Clarity Alliance - Zest Protocol v2 Upgrade V2 - December 20th, 2025
An active bug bounty program is running in partnership with Immunefi. Details are available here.
Continuous AI Security Testing
Audits are a snapshot. Security is a process. Zest Protocol runs a continuous, automated security harness against its contracts around the clock, driven by every frontier AI model from the day it ships.
Each new model release is deployed against the codebase as a fresh adversary, probing for anything that could put user funds or protocol state at risk. Every candidate finding is verified against the live contract code before it counts as a result.
Every released frontier model has been run against the protocol. The record: zero valid bug reports since the start of 2026.
Frontier models keep getting better at finding vulnerabilities. That is exactly why each new one is pointed at Zest Protocol's code first. The strongest attacker on the market is always working for the protocol, not against it.
Last updated