Skip to content

Commit a8d1c77

Browse files
authored
Merge pull request #97 from casper-network/doc/CD-102/add-security-reports-page
Add new Security Audit Reports page [CD-102]
2 parents 5438602 + f32dcc5 commit a8d1c77

File tree

4 files changed

+129
-1
lines changed

4 files changed

+129
-1
lines changed

config/sidebar.config.js

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -414,6 +414,18 @@ module.exports = {
414414
//"resources/advanced/list-cspr",
415415
],
416416
},
417+
{
418+
type: "category",
419+
label: "Security Audit Reports",
420+
collapsible: true,
421+
collapsed: true,
422+
link: {
423+
type: "doc",
424+
id: "resources/audit-reports/index",
425+
},
426+
items: [
427+
],
428+
},
417429
],
418430
users: [
419431
"users/index",
Lines changed: 53 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,53 @@
1+
# Casper Network Security Audit Reports
2+
3+
Welcome to Casper Network's official security audit documentation.
4+
5+
Our security audit program encompasses both core network infrastructure and ecosystem projects, ensuring comprehensive coverage across the entire Casper Network landscape.
6+
7+
## Purpose
8+
This page serves as your central hub for accessing security audit reports across the Casper Network ecosystem, by consolidating and sharing security audit reports to promote transparency and enable the ecosystem to make informed decisions about project security.
9+
10+
## Report Format
11+
12+
The standardized audit reports provide comprehensive insights into security assessments:
13+
14+
**Executive Summary** A high-level overview of key findings, risk assessments, and overall security posture suitable for technical and non-technical stakeholders.
15+
16+
**Audit Scope and Methodology** Detailed information about what was assessed, testing approaches used, and the audit framework applied to ensure thorough coverage.
17+
18+
**Findings and Recommendations** Complete documentation of identified vulnerabilities, security improvements, and actionable recommendations categorized by severity level.
19+
20+
**Remediation Status** Current status of addressed findings, implementation timelines, and verification of fixes where applicable.
21+
22+
**Auditor Information** Details about the auditing firm, their credentials, expertise areas, and methodology standards to help you assess report credibility.
23+
24+
## Audit Information
25+
26+
| Project | Prepared by | Report Date/Last Updated | Remediation Status | Full Report |
27+
|---------|-------------|--------------|---------------------|-------------|
28+
| Bridge Contracts | HALBORN | 07/17/2024 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/casper---allbridge-fa8c33) |
29+
| Shiboo Token - Simplified | HALBORN | 08/21/2024 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/casper---shiboo-token---simplified-assessment-70b767) |
30+
| Casper 2.0 - Casper Association | HALBORN | 04/17/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/casper-20-12a8fb) |
31+
| Odra - Liquid Staking | HALBORN | 05/27/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/odra---liquid-staking-231379) |
32+
| MAKE CSPR.name | HALBORN | 07/03/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/make-csprname-7b1108) |
33+
| CEP18 | HALBORN | 07/21/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/cep18-799d0b) |
34+
35+
36+
37+
## Important Notice
38+
39+
Security audit reports represent findings at the specific time of assessment. The dynamic nature of software development means that:
40+
41+
Projects may have implemented security fixes and updates since the original audit date
42+
New features or modifications may have been introduced that weren't part of the original scope
43+
We recommend verifying the current security status directly with project teams before making integration decisions
44+
45+
For the most current security information, we encourage you to review the latest available reports and contact project maintainers for recent updates.
46+
47+
## Continuous Security Improvement
48+
49+
This documentation represents our ongoing commitment to security excellence. We regularly update our audit repository with new reports and maintain current remediation status information to ensure the community has access to the most accurate and up-to-date security intelligence.
50+
51+
## Contact
52+
53+
For questions about submissions or repository access, please open an issue or contact the Casper Network team through our official support channels for detailed discussions about findings or methodologies.
Lines changed: 51 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,51 @@
1+
# Casper Network Security Audit Reports
2+
3+
Welcome to Casper Network's official security audit documentation.
4+
5+
Our security audit program encompasses both core network infrastructure and ecosystem projects, ensuring comprehensive coverage across the entire Casper Network landscape.
6+
7+
## Purpose
8+
This page serves as your central hub for accessing security audit reports across the Casper Network ecosystem, by consolidating and sharing security audit reports to promote transparency and enable the ecosystem to make informed decisions about project security.
9+
10+
## Report Format
11+
12+
The standardized audit reports provide comprehensive insights into security assessments:
13+
14+
**Executive Summary** A high-level overview of key findings, risk assessments, and overall security posture suitable for technical and non-technical stakeholders.
15+
16+
**Audit Scope and Methodology** Detailed information about what was assessed, testing approaches used, and the audit framework applied to ensure thorough coverage.
17+
18+
**Findings and Recommendations** Complete documentation of identified vulnerabilities, security improvements, and actionable recommendations categorized by severity level.
19+
20+
**Remediation Status** Current status of addressed findings, implementation timelines, and verification of fixes where applicable.
21+
22+
**Auditor Information** Details about the auditing firm, their credentials, expertise areas, and methodology standards to help you assess report credibility.
23+
24+
## Audit Information
25+
26+
| Project | Prepared by | Report Date/Last Updated | Remediation Status | Full Report |
27+
|---------|-------------|--------------|---------------------|-------------|
28+
| Bridge Contracts | HALBORN | 07/17/2024 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/casper---allbridge-fa8c33) |
29+
| Shiboo Token - Simplified | HALBORN | 08/21/2024 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/casper---shiboo-token---simplified-assessment-70b767) |
30+
| Casper 2.0 - Casper Association | HALBORN | 04/17/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/casper-20-12a8fb) |
31+
| Odra - Liquid Staking | HALBORN | 05/27/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/odra---liquid-staking-231379) |
32+
| MAKE CSPR.name | HALBORN | 07/03/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/make-csprname-7b1108) |
33+
| CEP18 | HALBORN | 07/21/2025 | 100% of all REPORTED Findings have been addressed | [Link](https://www.halborn.com/audits/casper-association/cep18-799d0b) |
34+
35+
## Important Notice
36+
37+
Security audit reports represent findings at the specific time of assessment. The dynamic nature of software development means that:
38+
39+
Projects may have implemented security fixes and updates since the original audit date
40+
New features or modifications may have been introduced that weren't part of the original scope
41+
We recommend verifying the current security status directly with project teams before making integration decisions
42+
43+
For the most current security information, we encourage you to review the latest available reports and contact project maintainers for recent updates.
44+
45+
## Continuous Security Improvement
46+
47+
This documentation represents our ongoing commitment to security excellence. We regularly update our audit repository with new reports and maintain current remediation status information to ensure the community has access to the most accurate and up-to-date security intelligence.
48+
49+
## Contact
50+
51+
For questions about submissions or repository access, please open an issue or contact the Casper Network team through our official support channels for detailed discussions about findings or methodologies.

versioned_sidebars/version-2.0.0-sidebars.json

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -424,6 +424,18 @@
424424
"resources/advanced/storage-workflow",
425425
"resources/advanced/cross-contract"
426426
]
427+
},
428+
{
429+
"type": "category",
430+
"label": "Security Audit Reports",
431+
"collapsible": true,
432+
"collapsed": true,
433+
"link": {
434+
"type": "doc",
435+
"id": "resources/audit-reports/index"
436+
},
437+
"items": [
438+
]
427439
}
428440
],
429441
"users": [
@@ -542,6 +554,6 @@
542554
"resources/advanced/storage-workflow",
543555
"resources/advanced/cross-contract"
544556
]
545-
}
557+
}
546558
]
547559
}

0 commit comments

Comments
 (0)