Wow - 7 years ago together with
@drdr_zz we published the first version of SCSVS, the Smart Contract Security Verification Standard. It wasn't even on GitHub.
At the time, it was the first security standard created specifically for smart contracts.
A lot has changed since then. SCSVS evolved, Web3 security evolved, and many early auditor checklists, methodologies and security tools drew inspiration from the knowledge collected in SCSVS - including projects such as Solodit.
With limited resources, we eventually chose to focus our time on building other things rather than pushing SCSVS as aggressively as we once did.
But in many ways, what exists today is even better.
We now have initiatives like
@_SEAL_Org Security Frameworks - a much more advanced, community-driven effort built collaboratively by many excellent security researchers across the ecosystem.
And I think thatโs exactly how security standards should evolve: not owned by one company or a handful of people, but continuously improved by the collective experience of the community.
I still remember the first feedback, discussions and support we received from many Security OGs when SCSVS was just getting started.
A beautiful little piece of Web3 security history for me.
Thank you to everyone who contributed, challenged us, shared it or supported the idea along the way. โค๏ธ
github.com/ComposableSecuritโฆ