| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | detector | Untrusted CALL target/value reachable | yes | yes |
| high | detector | ETH value transfer possible | yes | yes |
| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | codex | Refund finalization is reentrant before the contract is marked closed | no | — |
| high | codex | Failed refund calls are ignored and residual ETH is swept to slot0 | no | — |
| medium | codex | Payable fallback appears to accept contributions after the time gate | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 019b3836-333c-73df-8c9f-e39c4a7e4486 | complete | crit 0 high 2 | 5 | 3 months ago |