
EVM merkle-proof-based token distribution contracts supporting ERC-20 and NFT claims.
Withdrawal logic may permanently lock unclaimed NFTs in the contract.
Upgrade authority incorrectly assigned to the project owner.
NFT distribution fees cannot work with basis-point fee model.
Delegate query function remains accessible when delegation is disabled.
Get a free 30-minute security assessment. We will review your codebase scope and flag the top 3 risk areas.
No commitment required. Typical audits start within 1–2 weeks.