Quantstamp Audits Ampleforth, a Digital-Asset-Protocol for Smart Commodity-Money

July 17, 2019
Quantstamp Announcements

Quantstamp engineers recently completed an audit of Ampleforth, a digital-asset-protocol for smart commodity-money and the first IEO on Tokinex (Ethfinex/Bitfinex IEO platform). 

Founded with a mission to create fair, politically independent money, the Ampleforth protocol receives exchange-rate information from trusted oracles, and propagates that to holders of its units (Amples) by proportionally increasing or decreasing the number of tokens each individual holds. Quantstamp will serve as a trusted data feed provider for Ampleforth’s price oracle.

“Being audited by Quanstamp was important to us,” said Ampleforth CTO Brandon Iles. “They hold their clients and themselves to the highest security standards. We know that identifying any risks and vulnerabilities is critical to mitigating the risk of any future hacks.”

Commodity-monies such as gold and silver are naturally fair and independent; however, they are inadequate substitute for central-bank-money as they cannot respond efficiently to fluctuations in demand. To tackle this challenge, Ampleforth’s protocol allows its units (Amples) to avoid the deflationary problems of fixed-supply commodities without requiring a central authority. As the price of Amples fluctuates, the number of Amples a trader holds adjusts to meet the price target, stabilizing the asset.

Quantstamp’s objective was to evaluate the repository for security-related issues, code quality, and adherence to specification and best practices. The audit was conducted by three experienced security engineers from Quantstamp’s auditing team and involved architecture review, unit testing, functional testing, computer-aided verification and manual review. In the end, there were no significant security vulnerabilities found during the audit. The full report is publicly available.

Following the launch of Security Network V2, Ampleforth will be running a Quantstamp node, helping contribute to the reliability and decentralization of the network.


Quantstamp Announcements
July 17, 2019

Quantstamp engineers recently completed an audit of Ampleforth, a digital-asset-protocol for smart commodity-money and the first IEO on Tokinex (Ethfinex/Bitfinex IEO platform). 

Founded with a mission to create fair, politically independent money, the Ampleforth protocol receives exchange-rate information from trusted oracles, and propagates that to holders of its units (Amples) by proportionally increasing or decreasing the number of tokens each individual holds. Quantstamp will serve as a trusted data feed provider for Ampleforth’s price oracle.

“Being audited by Quanstamp was important to us,” said Ampleforth CTO Brandon Iles. “They hold their clients and themselves to the highest security standards. We know that identifying any risks and vulnerabilities is critical to mitigating the risk of any future hacks.”

Commodity-monies such as gold and silver are naturally fair and independent; however, they are inadequate substitute for central-bank-money as they cannot respond efficiently to fluctuations in demand. To tackle this challenge, Ampleforth’s protocol allows its units (Amples) to avoid the deflationary problems of fixed-supply commodities without requiring a central authority. As the price of Amples fluctuates, the number of Amples a trader holds adjusts to meet the price target, stabilizing the asset.

Quantstamp’s objective was to evaluate the repository for security-related issues, code quality, and adherence to specification and best practices. The audit was conducted by three experienced security engineers from Quantstamp’s auditing team and involved architecture review, unit testing, functional testing, computer-aided verification and manual review. In the end, there were no significant security vulnerabilities found during the audit. The full report is publicly available.

Following the launch of Security Network V2, Ampleforth will be running a Quantstamp node, helping contribute to the reliability and decentralization of the network.


INTERESTED IN RECEIVING A QUANTSTAMP AUDIT?
FIND OUT MORE
INTERESTED IN RECEIVING A QUANTSTAMP AUDIT?
FIND OUT MORE
Quantstamp Announcements

The Exploit Race

Web3 is different from “normal software” for one brutal reason: bugs turn directly into money. In 2025 alone, an estimated $3.4B was stolen through crypto exploits. That incentive creates a uniquely hostile environment where attackers systematize vulnerability search.

Read more
Quantstamp Announcements

Engineering Smart Contract Families for Solidity

Decentralized applications (dApps) (e.g., DEXes) increasingly span multiple Ethereum-compatible chains, such as a number of L2s. Although these chains are intended to be compatible with the Ethereum Virtual Machine (EVM), subtle differences in opcode implementations can significantly alter smart contract behavior and security. This poses an important question: how can developers efficiently code and manage smart contracts targeting different chains?

Read more
Quantstamp Announcements

Will EIP-7702 Affect Your Code?

The upcoming EVM hardfork, Pectra, amongst other changes, will implement EIP-7702, a proposal introducing a new transaction type that allows Externally Owned Accounts (EOAs) to delegate—and later undelegate—their behavior to smart contracts. While this upgrade enhances flexibility, it also disrupts long-standing security assumptions in many deployed contracts. With the risk that malicious actors may exploit these changes once Pectra is enabled, it is crucial to assess whether your codebase might be negatively impacted.

Read more