# Darkwave

> Independent smart contract security audits for DeFi protocols, bridges, and onchain organizations deploying significant value. Fixed scope. Formal report. Signed attestation. The audit firm protocols trust.

---

## Details

- **Category:** Smart contract security audits
- **Role:** Founder — kooky
- **Status:** Live
- **Site:** https://darkwave.ninja

---

## The project

Darkwave is a registered smart contract audit firm. Every engagement runs to a fixed scope, agreed in writing before any review begins, and ends in a formal report and a signed attestation letter on firm letterhead. Senior auditors read every line of in-scope code — manual review first, tooling second. It does one thing: smart contract security audits, nothing else.

---

## The method — four phases, every engagement

### Scoping & intake

Scope is fixed in writing before any review begins. Architecture review, threat model and trust boundaries are mapped, the timeline is confirmed, and the scope document is countersigned.

### Manual review

Senior auditors read every line of in-scope code: business logic, state transitions, access control, cross-contract call graphs, and economic invariants.

### Automated analysis

Slither static analysis, Echidna property-based fuzzing, and a Foundry invariant suite. Every automated finding is manually confirmed before it enters the report.

### Report & attestation

A full report in PDF and Markdown, an executive summary for board and investors, one remediation review round, and a signed attestation letter on firm letterhead.

---

## Why Darkwave

A registered entity, with engagements governed by formal service agreements. Fixed scope and fixed fee — quoted after the scoping call, no hourly billing. A single focus: audits only, no consulting or tooling side-business. Confidentiality by default, NDA available on request.

---

## See Darkwave

- Open Darkwave: https://darkwave.ninja
- Request an audit: https://darkwave.ninja/audit-request
