BlackHartBlackHart
D1

Access Control

Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.

Weight 18%70% confidence
62
Moderate
info

How This Score Is Built

Permission models, admin surface, reentrancy protection, and authorization boundaries. #1 exploit vector by dollar loss in DeFi history.

+23Strong positive
+12Positive
+5Slight positive
−15Strong negative
−8Negative
−3Slight negative

Scoring Tree

BRI Formula
300 + 700 × ∏(Dᵢ/100)^wᵢ
740
Current BRI
D1Access Control
Weight 18%
62
(62/100)^0.18 = 0.9176
Contributing Factors
+16DegenBox masterContractApproved pattern provides adequate access control
+16cook() is permissionless but deferred solvency check provides post-hoc guard
+16MIM mint is operator-only (single address)
+16Strategy management is owner-only with timelock
Evidence Sources
blackhart_analysisMay 4sha256:5bb15efa66c1....View
blackhart_analysisMay 17sha256:3fcdf4e47b4b....View

Score Composition

+16

DegenBox masterContractApproved pattern provides adequate access control

+16

cook() is permissionless but deferred solvency check provides post-hoc guard

Strong positiveopen_in_newSource CodeMay 4, 2026
+16

MIM mint is operator-only (single address)

Strong positiveopen_in_newSource CodeMay 4, 2026
+16

Strategy management is owner-only with timelock

Strong positiveopen_in_newSource CodeMay 4, 2026

Evidence Chain (2 files)

GitHub APIMay 17, 2026, 06:58 PM
open_in_newGitHub (/)
sha256:3fcdf4e47b4b...
BlackHart AnalysisMay 4, 2026, 11:30 PM
open_in_newAccess Control — Source Code
sha256:5bb15efa66c1...

Score History

No dimension-level score changes recorded yet.

Methodology: 2.1Formula: 1.1Weights: 1.1