Security at Ammalgam
Last updated June 18th 2026
Core Contracts
To ensure the security of the core contracts we went through four rounds of audit reviews. Each round we fixed all of the uncovered issues before starting the next round of reviews. Below is an outline of each review stage and the auditors and methods used.
Bug Bounty Q3 2026
Audit Round 4 Q2 2026
- Phil Cantina Audit Comp Winner Fix review
- Cantina Ai Scan
- Octane Ai Scan
- V12 Ai Scan
Audit Round 3 Q1 2026
- Pruvendo Formal Verification of Saturation Library Logic (40% of code)
- Phil Cantina Audit comp winner Manual Review
- ChainSecurity Ai Scan
- Octane Ai Scan
- Cantina Ai Scan
- Savant.chat Ai Scan
- V12 Ai Scan
Audit Round 2 Q3 2025
- ChainSecurity Manual review
- Cantina $60k Audit competition
Audit Round 1 Q1 2025
- ChainSecurity Manual review
- 0xMacro Manual review
Design Review Q1 2024
- ChainSecurity Whitepaper design review
Operational Security Q2 2026
We are in the process of an internal review using Seal Certification Framework. Many of the suggestions have already been incorporated into our contract design and operational, but reviewing will ensure that we exceed best practices outlined by the Seals Certification Framework standards.
We will continue to make announcements and update this as we implement recommendations that have not yet been completed.
Vaults
Our vault security design was built with multiple layers of security to ensure the safety of our assets.
- Lagoon Vault Smart contract infrastructure to manage assets on chain using the ERC-7540 standard.
- Utila MPC wallet to manage private keys. Any on chain interaction must be added to the rule set with authorization of multiple signers before executing. All other interactions are auto rejected
- Station70 Private key backup requiring multiple signers for recovery.
