# Smart contract security

`kaal:entity:smart-contract-security`

**Status.** derived

This node is assembled mechanically from the 2 claims that carry the concept tag `smart-contract-security`. It is a roster of what the corpus says under this term. It is **not** an adjudicated definition: no single statement here has been ruled canonical, and no first-appearance call has been made. Read the claims and judge for yourself.

## Every claim under this term

2 claims across 2 works, 2020 to 2024.

**2020**

- [3652481-009](https://wulfkaal.github.io/claims/3652481-009) [failure/evidenced] *(failure mode)* -- The immutability of blockchain ledgers is itself a vulnerability, because once a DAO is in operation its essential construction is very difficult to alter should a bug in the code appear.
  > The immutable nature of blockchain ledgers could also make the DAO vulnerable to attacks because it is so difficult to alter the essential construction of the DAO once the system is in operation, should a bug in the code arise.
  Wulf A. Kaal, Decentralized Autonomous Organizations – Internal Governance and External Legal Design (2020). SSRN: https://ssrn.com/abstract=3652481

**2024**

- [4734750-004](https://wulfkaal.github.io/claims/4734750-004) [failure/argued] *(failure mode)* -- Bug bounty programs fail at their own premise because the hackers they pay to demonstrate exploitability frequently sell or exploit the bugs they find instead of disclosing them.
  > Alas, hackers often sell the bug or exploit them when they discover them.
  Wulf A. Kaal, Code Review DAO (2024). SSRN: https://ssrn.com/abstract=4734750

## Verify

Every claim above resolves to a record carrying a verbatim source quote, the sha256 of the source PDF, and a preformatted citation. Nothing here asks to be taken on trust.

    curl -s https://wulfkaal.github.io/entities/smart-contract-security.md | sha256sum

**Canonical form.** This markdown file is the canonical hashed representation of this entity node. Its sha256 is the content hash.
