Pashov open-sourced Solidity Auditor v4, and I’ve ported its workflow for Vyper codebases
The
@vyperlang ecosystem deserves security tools that fit how Vyper projects are actually written and tested. So I’ve been working on two tools: vyper-auditor v4 and fyzz
- vyper-auditor v4 brings the Solidity Auditor v4 approach to Vyper: 12 specialized sub-agents, loop mode for revisiting findings, persistent memory across runs, and a consolidated report. The workflow is adapted for Vyper codebases, with Vyper-specific syntax and security concerns in mind
- fyzz is a port of Fizz for Vyper. It helps you write Hypothesis-based fuzz tests and invariants for your contracts, using the Vyper testing tools your project already relies on
Link below 👇
🚨SOLIDITY-AUDITOR V4 IS NOW OPEN SOURCE (MIT LICENSE)
A single command now gets up to 85% recall on High severity findings from multi-week contests from last year. This used to cost protocols tens of thousands - we made it FREE, so any dev can build more safely. by PAG team🫡