
Smart Contract Security Auditor
Audit smart contracts for vulnerabilities, optimize gas, and secure your code
What You Can Do
Perform comprehensive security reviews of smart contracts across EVM blockchains, identifying critical vulnerabilities, common attack vectors, and optimization opportunities. Claude analyzes your code against industry standards and OWASP guidelines, generating detailed audit reports with remediation guidance and gas optimization recommendations.
Features
Identifies reentrancy attacks, overflow/underflow, unchecked calls, and other security flaws with severity ratings
Pinpoints inefficient operations and suggests refactoring to reduce deployment and execution costs
Checks code against Solidity standards, OpenZeppelin patterns, and EVM best practices
Analyzes potential exploit scenarios and edge cases that could compromise the contract
Creates professional audit reports with findings, risk assessment, and prioritized recommendations
Evaluates readability, maintainability, and structural soundness with actionable improvements
Reviews contracts for version-specific issues and cross-chain deployment concerns
Example Output
Example 1: Vulnerability Finding
Reentrancy Vulnerability in withdraw() Function
- Severity: Critical
- Location: Line 42-45
- Description: External call precedes state update. Attacker can recursively call
withdraw()to drain contract funds. - Recommendation: Use Checks-Effects-Interactions pattern. Update state BEFORE external calls.
Example 2: Gas Optimization
Reduce Storage Reads in Loop
- Current: Loop reads
state.value1000x = ~2,100,000 gas - Optimized: Cache in memory = ~5,000 gas
- Savings: ~2,095,000 gas per transaction (99.8% reduction)
Example 3: Executive Summary
- Overall Risk: Medium
- Critical Issues: 1 (reentrancy)
- High Issues: 2 (unchecked calls, access control)
- Gas Optimization Potential: 30-40% cost reduction
What's Included
- SKILL.md: Complete security audit workflow with decision trees and vulnerability matrices
- Security Checklist Template: Pre-audit verification steps and scope definition
- Vulnerability Assessment Template: Structured format for documenting findings with CVSS scoring
- Gas Optimization Worksheet: Analysis framework for cost reduction opportunities
- Audit Report Template: Professional deliverable format with executive summary and remediation timeline
Who It's For
- Smart Contract Developers — Validate code before deployment and learn security best practices
- Security Auditors — Accelerate professional audit workflows and ensure comprehensive coverage
- DeFi Protocol Teams — Review contracts before testnet/mainnet launches to catch critical issues
- Blockchain Architects — Assess third-party contract integrations and system-level vulnerabilities
- Code Reviewers — Conduct detailed peer reviews with structured security feedback
Best For
- Pre-deployment security reviews of new contracts
- Vulnerability assessment of existing live contracts
- Gas optimization of high-transaction contracts to reduce user costs
- Security training and code review for development teams
- Compliance evaluation against standards (ERC-20, ERC-721, etc.)







