Security-First Protocol Design for Web3 Teams

Architecture and mechanism-level review before design decisions become expensive to reverse. The goal is to catch flawed assumptions, audit blockers, and launch-delaying security issues before mainnet.

Discuss a project
Discuss a project

Relevant work spans DeFi mechanisms, custom L1 architectures and cross-chain systems across EVM and non-EVM environments.

Ethereum
Solana
Rust
Polkadot
CosmWasm
Stellar
Cosmos
Cardano
April, June-August, October 2025
Security Audit

ZKsync OS is a new RISC-based execution system for the next generation of ZKsync. Taran Space reviewed core components across multiple engagements, including the bootloader, transaction processing, EVM implementation, cache logic, and L2 interoperability paths at the center of the rollup architecture. The work also included a dedicated cryptography review focused on elliptic-curve components and proof-adjacent logic.

Powers an ecosystem securing over $320 million in value.

Cryptography
L2
EVM
Rust
Cryptography
Virtual Machines
L2
EVM
Solidity
Rust
Execution Layer
Cryptography
July-August 2025
Security Audit
In partnership with Oak

Stellar is a major blockchain infrastructure network for payments, tokenized assets, and financial applications. The work was delivered through public Oak Security engagements and covered Stellar Core protocol updates, with focus on correctness and consensus-sensitive changes that affect secure network operation.

Stellar has over $180M in DeFi TVL.

L1
Rust
C++
Rust
L1
C++
Virtual Machines
Stellar
All Reports
In partnership with Oak
2023-2025
Security Audit
In partnership with Oak

Snowbridge is a trustless bridge between Polkadot and Ethereum, using light-client verification instead of a trusted multisig or external validator set. Working as part of Oak Security’s team, we reviewed multiple releases, focusing on the boundaries between consensus assumptions, bridge logic, and Solidity/EVM execution.

Secures over $30M in assets bridged between Ethereum and Polkadot.

Cross-Chain
Polkadot
EVM
Cryptography
Cross-Chain
Polkadot
EVM
Solidity
Rust
Cryptography
All reports
In partnership with Oak
May 2026
Security Audit
In partnership with Hashlock

STBL is a stablecoin infrastructure protocol for token issuance, asset management, yield distribution, and operational control. We carried out the review for Hashlock, covering STBL’s Stellar/Rust smart-contract system, including asset issuer, airdrop issuer, USST/STBL token, oracle, registry, access-control, upgrade, and yield-distribution components.

Stablecoin infrastructure for asset issuance and yield distribution

February 2026
Security Audit
In partnership with Cyberscope

Empowa / NSE Housing connects Cardano smart contracts with a real-world housing-finance application linked to the Nairobi Securities Exchange. Scope included eUTXO transaction design, order-book behavior, and business-critical contract logic used to coordinate financial activity before release.

RWA finance linked to a national securities exchange

Cardano
DEX
Cardano
DeFi
DEX
UTXO
View Report
In partnership with Cyberscope
April-May 2026
Security Audit
In partnership with Hashlock

VIA Labs builds cross-chain messaging infrastructure for moving data and value between blockchain networks. In a Hashlock-branded engagement, we reviewed VIA Labs’ Stellar/Soroban Rust messaging stack, covering client, fee-handler, gas-handler, message-client, and message-gateway components.

Cross-chain messaging for value-bearing blockchain flows

Stellar
Cross-Chain
Rust
Stellar
Rust
Cross-Chain
Private engagement
In partnership with Hashlock

Contact

Tell us what you’re building and what kind of security support you need. Telegram is usually the fastest way to reach us. For formal inquiries, you can also use email.

Thank you for your inquiry! We've received your message and will respond soon.
Oops! Something went wrong while submitting the form.