{"id":13530541,"url":"https://github.com/nascentxyz/simple-security-toolkit","last_synced_at":"2025-05-16T07:05:17.929Z","repository":{"id":37589016,"uuid":"479526508","full_name":"nascentxyz/simple-security-toolkit","owner":"nascentxyz","description":"A collection of practical security-focused guides and checklists for smart contract development","archived":false,"fork":false,"pushed_at":"2023-11-15T16:33:31.000Z","size":53,"stargazers_count":1118,"open_issues_count":0,"forks_count":153,"subscribers_count":15,"default_branch":"main","last_synced_at":"2025-04-08T16:09:30.818Z","etag":null,"topics":["crypto","security","security-tools","smart-contracts","solidity"],"latest_commit_sha":null,"homepage":"","language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/nascentxyz.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":"audit-readiness-checklist.md","citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null}},"created_at":"2022-04-08T20:16:19.000Z","updated_at":"2025-04-06T20:05:38.000Z","dependencies_parsed_at":"2023-11-15T17:42:45.259Z","dependency_job_id":"9d7d7fc2-1dc6-418a-99e4-7d1102c293f0","html_url":"https://github.com/nascentxyz/simple-security-toolkit","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/nascentxyz%2Fsimple-security-toolkit","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/nascentxyz%2Fsimple-security-toolkit/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/nascentxyz%2Fsimple-security-toolkit/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/nascentxyz%2Fsimple-security-toolkit/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/nascentxyz","download_url":"https://codeload.github.com/nascentxyz/simple-security-toolkit/tar.gz/refs/heads/main","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":254485057,"owners_count":22078767,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["crypto","security","security-tools","smart-contracts","solidity"],"created_at":"2024-08-01T07:00:51.531Z","updated_at":"2025-05-16T07:05:12.920Z","avatar_url":"https://github.com/nascentxyz.png","language":null,"funding_links":[],"categories":["Uncategorized","Security","Others","Controls"],"sub_categories":["Uncategorized","Cairo"],"readme":"# Simple Security Toolkit\nThis repo is a collection of practical security-focused guides and checklists for smart contract development, assembled by the [Nascent](https://www.nascent.xyz/) team to share with our portfolio companies and others in the ecosystem who might find it useful. It is not intended to be comprehensive; it skews towards practical and opinionated recommendations that we find to be appropriate particularly for teams developing and managing early versions of a protocol.\n\n### Contents\n\n1. **[Development Process](https://github.com/nascentxyz/simple-security-toolkit/blob/main/development-process.md)**\n\nOne of the most crucial factors in having a secure codebase is a solid development process: \"an ounce of prevention is worth a pound of cure.\" This document gives an example development process that we, at Nascent, have found works well. It walks through the steps from initial design and feature requests -\u003e specification -\u003e evaluation -\u003e implementation -\u003e testing -\u003e deployment -\u003e monitoring.\n\n2. **[Audit Readiness Checklist](https://github.com/nascentxyz/simple-security-toolkit/blob/main/audit-readiness-checklist.md)**\n\nAudits are expensive, time consuming, and need to be scheduled months in advance. Completing this checklist helps ensure a codebase is ready for outside review and helps catch as much low-hanging fruit as possible. This will allow the auditors to focus their time and attention on identifying deeper and more critical vulnerabilities.\n\n3. **[Pre-Launch Security Checklist](https://github.com/nascentxyz/simple-security-toolkit/blob/main/pre-launch-security-checklist.md)**\n\nBefore deploying code to mainnet, teams should complete this checklist to make sure they have taken the necessary steps to enable reporting and responding to potential bugs or security incidents.\n\n4. **[Incident Response Plan Template](https://github.com/nascentxyz/simple-security-toolkit/blob/main/incident-response-plan-template.md)**\n\nNo project ever expects to have a security incident. Having a plan documented in advance can help a team respond swiftly and calmly in the heat of the moment when adrenaline is running high.\n\n\n### Contributing\n\nThanks for your interest in contributing! We are *very* opinionated as to what gets added to this repository. However, we are open to outside contributors putting forth suggestions and encourage you to do so. If you have ideas for a new document, it is likely best to open an issue before starting on a PR to gauge our support. If you have suggestions to existing documents, you can open a PR right away.\n\nFeel free to fork this repo and make it your own. Share your ideas with your team and iterate. If you find things that may be useful to a broader set of teams, consider opening a PR!\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fnascentxyz%2Fsimple-security-toolkit","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fnascentxyz%2Fsimple-security-toolkit","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fnascentxyz%2Fsimple-security-toolkit/lists"}