Quantstamp Audits Lockdrop for Polkadot’s First Smart Contract Platform: Edgeware

May 21, 2019
Quantstamp Announcements

Quantstamp recently audited Edgeware's lockdrop contract. Edgeware is the first smart contract platform which plans to integrate with Polkadot, a blockchain interoperability platform. Built as a parachain of Polkadot, Edgeware is a WebAssembly (Wasm) runtime, high-performance, self-upgrading smart contract platform with on-chain governance. As an infrastructure project, Edgeware aims to address many of the shortcomings facing blockchain technology, including governance hurdles, developer accessibility, and token distribution challenges.

“At Quantstamp we’re invested in blockchain technology and want to see it succeed,” says Richard Ma, CEO of Quantstamp. “Scalability and interoperability are some of the biggest challenges facing the industry now. By auditing the lockdrop for Edgeware - a scalable smart contract platform built for Polkadot - we aim to help push forward the next generation of blockchain technology and allow it to thrive.”

Built by Commonwealth Labs, Edgeware is the first announced smart contract platform for Polkadot, a promising new blockchain-interoperability platform. Created as a “parachain”, it aims to make it easy to build smart contract-based applications on Polkadot and features a robust on-chain governance model. Participants can vote, delegate, and fund each other to upgrade the network.

Polkadot - Blockchain Interoperability Platform

Polkadot is a blockchain-interoperability platform that aims to address many of the challenges facing blockchains today. Rather than trying to be all things at once, it aims to allow blockchains to communicate with each other, allowing projects to use different blockchains to address different needs. Each blockchain is considered a “parachain” connected to Polkadot’s main relay chain. Polkadot provides scalability, interoperability, and also upgradeability without having to fork - a severe limitation of today’s most popular blockchains.

Edgware’s Lockdrop

Edgeware is using a novel token “lockdrop” distribution method to distribute 90% of tokens. Participants can timelock their ETH for 3 months, 6 months, or one year to receive EDG tokens, and receive their original ETH back.

Quantstamp’s engineers worked over the course of several days using open source tools to analyze Edgeware’s token lockup contract for potential vulnerabilities to ensure smart contract security and safety of funds. To the extent reviewed, this audit aims to make sure that funds cannot be accessed or stolen from the contracts. This involved auditing to avoid any bugs in the contract code or at the time of execution, which if not addressed, could be exploited by a malicious attacker to access funds from the contract.

“With Edgeware, we’re addressing the challenges facing the blockchain space through using the latest tools and frameworks, as well as new governance and token distribution models,” noted Dillon Chen, founder of Commonwealth Labs. “Tied closely to the governance of our project is our lockdrop token distribution. With on-chain governance and a 90% lockdrop token distribution, the lockdrop is key to the success of our project and we wanted to go with the most trusted name in the business - Quantstamp.”  

Get an Audit with Quantstamp

Interested in receiving a Quantstamp audit or other service? The best crypto native companies trust Quantstamp to audit their products including Chainlink, OmiseGO and Binance. Learn more here.

Read More About Quantstamp’s Recent Accomplishments

Don’t miss out on the latest from Quantstamp. join the discussion on Reddit, subscribe to our Youtube channel, check out our Github, follow us on Twitter, or find us on LinkedIn.

Quantstamp Announcements
May 21, 2019

Quantstamp recently audited Edgeware's lockdrop contract. Edgeware is the first smart contract platform which plans to integrate with Polkadot, a blockchain interoperability platform. Built as a parachain of Polkadot, Edgeware is a WebAssembly (Wasm) runtime, high-performance, self-upgrading smart contract platform with on-chain governance. As an infrastructure project, Edgeware aims to address many of the shortcomings facing blockchain technology, including governance hurdles, developer accessibility, and token distribution challenges.

“At Quantstamp we’re invested in blockchain technology and want to see it succeed,” says Richard Ma, CEO of Quantstamp. “Scalability and interoperability are some of the biggest challenges facing the industry now. By auditing the lockdrop for Edgeware - a scalable smart contract platform built for Polkadot - we aim to help push forward the next generation of blockchain technology and allow it to thrive.”

Built by Commonwealth Labs, Edgeware is the first announced smart contract platform for Polkadot, a promising new blockchain-interoperability platform. Created as a “parachain”, it aims to make it easy to build smart contract-based applications on Polkadot and features a robust on-chain governance model. Participants can vote, delegate, and fund each other to upgrade the network.

Polkadot - Blockchain Interoperability Platform

Polkadot is a blockchain-interoperability platform that aims to address many of the challenges facing blockchains today. Rather than trying to be all things at once, it aims to allow blockchains to communicate with each other, allowing projects to use different blockchains to address different needs. Each blockchain is considered a “parachain” connected to Polkadot’s main relay chain. Polkadot provides scalability, interoperability, and also upgradeability without having to fork - a severe limitation of today’s most popular blockchains.

Edgware’s Lockdrop

Edgeware is using a novel token “lockdrop” distribution method to distribute 90% of tokens. Participants can timelock their ETH for 3 months, 6 months, or one year to receive EDG tokens, and receive their original ETH back.

Quantstamp’s engineers worked over the course of several days using open source tools to analyze Edgeware’s token lockup contract for potential vulnerabilities to ensure smart contract security and safety of funds. To the extent reviewed, this audit aims to make sure that funds cannot be accessed or stolen from the contracts. This involved auditing to avoid any bugs in the contract code or at the time of execution, which if not addressed, could be exploited by a malicious attacker to access funds from the contract.

“With Edgeware, we’re addressing the challenges facing the blockchain space through using the latest tools and frameworks, as well as new governance and token distribution models,” noted Dillon Chen, founder of Commonwealth Labs. “Tied closely to the governance of our project is our lockdrop token distribution. With on-chain governance and a 90% lockdrop token distribution, the lockdrop is key to the success of our project and we wanted to go with the most trusted name in the business - Quantstamp.”  

Get an Audit with Quantstamp

Interested in receiving a Quantstamp audit or other service? The best crypto native companies trust Quantstamp to audit their products including Chainlink, OmiseGO and Binance. Learn more here.

Read More About Quantstamp’s Recent Accomplishments

Don’t miss out on the latest from Quantstamp. join the discussion on Reddit, subscribe to our Youtube channel, check out our Github, follow us on Twitter, or find us on LinkedIn.

Quantstamp Announcements

Will EIP-7702 Affect Your Code?

The upcoming EVM hardfork, Pectra, amongst other changes, will implement EIP-7702, a proposal introducing a new transaction type that allows Externally Owned Accounts (EOAs) to delegate—and later undelegate—their behavior to smart contracts. While this upgrade enhances flexibility, it also disrupts long-standing security assumptions in many deployed contracts. With the risk that malicious actors may exploit these changes once Pectra is enabled, it is crucial to assess whether your codebase might be negatively impacted.

Read more
Quantstamp Announcements

When AI Meets Blockchain: A Guide to Securing the Next Frontier

In recent months, AI agents have attracted significant attention by the promise of assisting users and automating complex processes across diverse applications. The rapid performance improvements of Large Language Models (LLMs) in natural language processing (NLP) tasks drive this trend. However, as the capabilities and reach of these agents expand, so do the risks. The rapid pace of development, combined with the intricacies of integrating LLMs into real-world infrastructures—especially in dynamic fields like blockchain—has created an urgent need to scrutinize them for security, compliance, and operational integrity.

Read more
Quantstamp Announcements

Monthly Hacks Roundup: April 2024

April was a hectic month for the web3 security landscape, including significant rug pulls and security hacks totaling over $103 million in losses. Read on as we dive into three major security incidents and some of the trends from last month.

Read more