Skip to content

Security

Audit Status

YearRing Fund Protocol has not yet completed a third-party external audit.

ItemStatus
External auditPending
Mainnet validationIn progress
Internal reviewOngoing
Public bug bountyNot yet active

Responsible Disclosure

If you discover a potential vulnerability, please contact:

security@yearringfund.com

Please do not publicly disclose vulnerabilities before the team has had a reasonable opportunity to investigate and respond.

Scope

Current security review focus:

  • FundVaultV01
  • StrategyManagerV01
  • AaveV3StrategyV01
  • LockRewardManagerV02
  • LockLedgerV02
  • RewardToken
  • GovernanceSignalV02
  • ProtocolTimelockV02

Known Limitations

The protocol is in an early validation phase. Users and reviewers should assume:

  • smart contract risk exists
  • strategy integration risk exists
  • governance and admin configuration risk exists
  • oracle, accounting, and liquidity risks may exist in future RWA versions
  • external audit is still pending

Contact

Websitehttps://yearringfund.com
Apphttps://app.yearringfund.com
Docshttps://docs.yearringfund.com
Securitysecurity@yearringfund.com

YearRing Fund Protocol is experimental software. Nothing here constitutes financial advice.