For the complete documentation index, see llms.txt. This page is also available as Markdown.

Audits

Battle-Tested Security

Zest V2 has undergone multiple comprehensive security audits, building on V1's foundation as one of the most thoroughly reviewed protocols on Stacks. The V2 architecture includes:

  • Enhanced position validation with Risk Group transition protection

  • Improved pausability mechanisms with grace periods for emergency responses

  • Robust health check systems that validate positions before and after every operation

  • Time-based precision using block timestamps for accurate interest and oracle calculations

Zest Protocol V2 has been audited by:

Audit Reports

An active bug bounty program is running in partnership with Immunefi. Details are available here.

Continuous AI Security Testing

Audits are a snapshot. Security is a process. Zest Protocol runs a continuous, automated security harness against its contracts around the clock, driven by every frontier AI model from the day it ships.

Each new model release is deployed against the codebase as a fresh adversary, probing for anything that could put user funds or protocol state at risk. Every candidate finding is verified against the live contract code before it counts as a result.

Every released frontier model has been run against the protocol. The record: zero valid bug reports since the start of 2026.

Frontier models keep getting better at finding vulnerabilities. That is exactly why each new one is pointed at Zest Protocol's code first. The strongest attacker on the market is always working for the protocol, not against it.

Last updated