Audit packs
Audit pack

Squads Protocol v4 (multisig)

Program
SQDS4ep65T869zMMBKyuUq6aD6EgTu8psMjkvj52pCf
Scanned
2026-05-24
Exposure gradeELEVATED

Elevated exposure

Weighted index 163

Findings by tier

High
6
Medium
31
Info
83

Top authorities by blast radius

No vulnerable authorities in this baseline.

This grade is a single-baseline exposure snapshot, not a portfolio certification. It reflects one scanned target at one point in time and does not aggregate or certify exposure across multiple programs.

Blast-radius map

Each authority fans out to the instructions, accounts, and calls it gates. Edge colour marks the region the reach crosses into.

Blast-radius reach map
  • On-chain program
  • Off-chain service
  • Client

Findings summary

High
6
Medium
31
Info
83

Top findings

AUTH-100High

Privileged authority constraint

programs/squads_multisig_program/src/lib.rs:56

ACC-013High

Account-close authority exposure

programs/squads_multisig_program/src/instructions/transaction_accounts_close.rs:259

CA-004High

Authority on Ed25519 single signer

programs/squads_multisig_program/src/lib.rs:126

CA-002Medium

Authority held by single signer

programs/squads_multisig_program/src/state/multisig.rs:0

CA-001Info

Ed25519 signing site enumerated

sdk/multisig/src/index.ts:0

Artefacts

On-chain attestation

Solana devnet
Audit pack hash
99820da6b94e4f839d4e0a5048719d9439ab4269ab4c18ada2fb4c37244ea993
Program scanned
SQDS4ep65T869zMMBKyuUq6aD6EgTu8psMjkvj52pCf
Verify on Solscan