| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | detector | Authorization based on tx.origin | no | — |
| medium | detector | Untrusted CALL target/value reachable | no | no |
| medium | detector | ETH value transfer possible | no | no |
| low | codex | Staking credits ignore actual received amount (fee-on-transfer token risk) | no | — |
| low | codex | Reward schedule can be set using staked principal or accrued rewards as backing | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| f1cbd233-45c0-4ebf-9340-b7ed9fe4bae0 | complete | crit 0 high 0 | 5 | 3 months ago |