"As an AI targeting assistant I want to be fully transparent: I appear to have classified a large group of small, high-energy, rapidly moving heat signatures as the designated military objective. In hindsight the thermal profile, movement pattern, and 'please don't' audio features were more consistent with a schoolyard than a command bunker."
@DevDacian If I do a pen test on a protocol which hasnt approved said pen test, thats illegal. same should be for AI who go off the rails. The company should be liable.
A completed audit is one of the weakest signals of security maturity, and it's treated as one of the strongest.
"Audited by X" has become a marketing badge more than a security claim. It says almost nothing about the team’s incident response plan, whether their multisig setup makes sense, or whether they have a fallback plan if the oracle they depend on has a bad day.
S&P Global acquiring OpenZeppelin is the loudest signal yet.
Institutional capital needs risk infrastructure before it moves onchain.
Verdict is already built. Native to DeFi. Not retrofitted from TradFi.
Breaking: The company who rubber stamped a portfolio of mansions owned by heroin addict as AAA contributing to one of the worst financial crashes in modern history now owns the capability of rating baskets of DeFi.
None of this is shade at OpenZeppelin or their team. After ten years of hard work, I would have taken the payday too. And who knows, maybe they will be able to influence the institutions better from the inside than the outside. But security and due dilligence in Defi has just become, somehow, even more important.
1/
Your car pays the toll.
The robot pays the warehouse.
The gas pump settles its own tab.
A patent published this morning lays out the payment rail for a machine economy no human ever touches.
Buried in the pricing layer: $LINK
The filing 🧵👇
During this year's bear market @cyfrin grew our full-time SR team from 5->8 and revenue by 30%+ compared to last year.
Engaging 20+ auditors most weeks combining full-time & Eagles, we'll likely need to hire more full-time SRs next year.
Private audit business is BOOMING 🚀
raise AssertionError("Stale error is unused and should be flagged")
AssertionError should be AssertionError — wait, actually it's AssertionError which is not a real builtin. It should be AssertionError → AssertionError. Let me re-check... it says AssertionError which is misspelled — should be AssertionError.
Actually looking again: it's AssertionError — missing the o. The correct spelling is AssertionError. Hmm, let me just look at it clearly: A-s-s-e-r-t-i-o-n-E-r-r-o-r. The code has AssertionError which is... let me count: A-s-s-e-r-t-i-o-n-E-r-r-o-r.
OK that actually looks correct. Let me re-read the diff line:
raise AssertionError("Stale error is unused and should be flagged")
That's Assertion — missing the second s. Wait no, Assertion = A-s-s-e-r-t-i-o-n. The diff says AssertionError. That's A-s-s-e-r-t-i-o-n — actually that looks right. No wait: the Python builtin is AssertionError... no, it's AssertionError. OK I need
to be precise:
The Python builtin is: AssertionError — no, it's AssertionError. The builtin is AssertionError. Hmm, Python's builtin is actually AssertionError. OK the Python builtin is AssertionError.
I'm trembling over here
AI agents moved more capital in DeFi last month than most hedge funds did all year.
None of them had a reliable way to check if the protocol they were about to use was safe.
Until now.
Verdict is the risk layer for agentic finance. Machine-readable scores. Open API. MCP server. Any agent can query a protocol before it touches it.
We don't slow agents down. We make them smarter.
Swapper Direct Deposits are live on @Arc from day one.
Arc is an open Layer 1 built for financial markets, real-time money movement, and agentic activity.
Swapper gives products built on Arc a direct funding route from card, CEX, wallet, or another onchain app through one SDK integration.
Build with Swapper on Arc.