This repository preserves the public scope and evidence package prepared for Sherlock's review of ODEI / $ODAI on Base.
$ODAI was deployed through Flaunch. The relevant security surface is therefore the exact deployed contract and control path, including Flaunch and Uniswap V4 dependencies, rather than a private ODEI Solidity repository.
| Record | Status |
|---|---|
| Initial Sherlock scope | Published |
| Deployed-contract registry | Published |
| Verified on-chain source and ABI artifacts | Published where available |
| Reproduction instructions | Published |
| Final official Sherlock report | Not linked in this public repository |
| Security certificate | Not claimed |
Read AUDIT_STATUS.md before citing this repository.
- Initial Sherlock scope
- Contract registry
- On-chain security manifest
- Flaunch upstream reference
- Verification pack
- Reproduce on-chain reads
- Limitations
The contracts/source/ and contracts/abi/ directories contain verified BaseScan/Etherscan v2 source and ABI artifacts for listed contracts where available.
The scope asks independent reviewers to verify or reject claims about:
- supply and mint authority;
- freeze and blacklist behavior;
- treasury action surfaces;
- Flaunch RevenueManager control paths;
- FeeEscrow accounting;
- PBW / BidWall mechanics;
- creator revenue routing;
- Flaunch and Uniswap V4 dependency risk.
- Verified deployed source and ABI in this repository.
- The concrete address map in
contracts/contract-registry.json. - Flaunch release notes for deployment cross-checking.
- Upstream
mainbranches as non-authoritative context only.
This package is evidence for review. It is not, by itself, proof that Sherlock confirmed every submitted claim and it is not a security certificate. A final report must be cited through its exact official artifact and exact audited scope.
Security and audit contact: ai@odei.ai