Back to blogs
Written by
Cyfrin
Published on
February 3, 2025

CodeHawks Partners with OpenZeppelin, Guardian Audits, and Hashlock To Launch Co-Hosted Audits

CodeHawks partners with Guardian Audits, OpenZeppelin, and Hashlock to enhance protocol security through multi-phased, co-hosted smart contract audits.

Table of Contents

CodeHawks is thrilled to partner with leading web3 security firms, Guardian Audits, OpenZeppelin, and Hashlock, to enhance protocol security through multi-phase, smart contract audits co-hosted on Cyfrin CodeHawks.


An illustration introducing 'Co-hosted Audits,' showcasing collaborative auditing with tools like CodeHawks, Hashlock, OpenZeppelin, and GA Guardian on a smart contract file.

What is a co-hosted audit?

A co-hosted audit combines the depth of private audits with the breadth of competitive security reviews, creating a comprehensive, multi-phase security assessment. Partnering with industry leaders ensures projects receive focused expert attention and broad community scrutiny.

Why multi-phase, co-hosted audits improve security

As web3 evolves, so does the sophistication of the hacks. To ensure maximum security, a multi-phase audit approach is becoming the industry standard. However, managing separate private and competitive audits across different firms often creates a fragmented and inefficient process. 

Our co-hosted audit program addresses this problem by streamlining this journey while maximizing security coverage. A single, trusted security partner guides protocols through all process phases, ensuring full coverage without loss of context or visibility.

How it works

The co-hosted audit process follows three phases:

  1. Phase 1: Private audit: Protocols engage Guardian Audits, Hashlocks, or OpenZeppelin for a thorough private audit to establish a strong security foundation.
  2. Phase 2: Competitive review: Once private audit mitigations are complete, the protocol, together with the partner firm, add an additional layer of security by undergoing a competitive audit on CodeHawks, leveraging our community of hundreds of security researchers and state-of-the-art judging solutions.
  3. Phase 3: Expert mitigation review: The private auditing firm, already deeply familiar with the codebase, guides the project through remediation.

This comprehensive, multi-phase approach to security audits ensures that every aspect of a protocol’s codebase is reviewed for security vulnerabilities. Driving our mission forward are the industry’s trusted leaders shaping the future of blockchain security.

OpenZeppelin

The OpenZeppelin logo featuring a modern, clean "Z" design with accompanying text.

Founded in 2015, OpenZeppelin is the gold standard for building, securing, and operating on-chain applications at any scale. OpenZeppelin Contracts Library, Security Services, and Defender Cloud Services enable clients to ship smart contract applications fast and transact safely across 30+ networks. 

OpenZeppelin secures success for over a thousand trusted web3 projects, foundations, DAOs, and enterprises, including Coinbase, Ethereum Foundation, Compound, Aave, Uniswap, Matter Labs, and ANZ Bank. It has secured over $50B in Total Value Locked (TVL) and identified 1,000+ critical and high-impact vulnerabilities. 

"By combining our comprehensive security expertise with CodeHawks' competitive audit platform, we are creating a more comprehensive approach to lowering risk across the top projects in the ecosystem,” commented Jota Carpanelli, Head of Security Research.


Guardian Audits

The Guardian Audits logo in bold black text with the letters "GA" stylized.

Guardian Audits delivers “devastatingly effective smart contract security for when it has to be right the first time.” Trusted by top web3 teams globally, including Poolshark, Dolomite, Tether, GMX, Orderly, Arbitrum, and Synthetix, it has secured over $7B worth of digital assets.

Guardian Audits specializes in smart contract security, providing comprehensive auditing services for blockchain applications. The company focuses on ensuring the security and integrity of smart contracts by conducting thorough audits and offering educational resources. 

Guardian Audits employs a unique model with two internal teams to re-imagine traditional audit processes, aiming to leave no stone unturned in their security assessments. The company also performs practice audits and collaborates with professional auditors to enhance their services.

"Guardian Audits is thrilled to partner with CodeHawks and refer our clients to their competitive security reviews to ensure optimal coverage," commented Owen Thurm, Co-founder.


Hashlock

The Hashlock logo with a green hashtag symbol and sleek black text.

Hashlock is on a mission to ensure all stakeholders in blockchain innovation can use web3 securely. Founded in Australia, the company was born with the vision of conducting the most comprehensive security research possible and applying it to the protocols they work with to boost secure innovation. It is a highly specialized web3 security firm, differentiated by the quantity of their findings and high level of collaboration. 

Through more than 200 audits, Hashlock has secured over $1.3B in on-chain assets. Past clients include Verida, Layer One X, Algem, 4ire, and Labris. 

"Our manual analysis background has shown us the power of diverse security perspectives," notes Fletcher Roberts, Hashlock. "This collaboration with CodeHawks multiplies our ability to discover vulnerabilities through their competitive format while maintaining our high standard of client collaboration throughout the process."

Setting the stage for success, we’re pleased to announce our inaugural co-hosted audit to highlight the strength and innovation of our combined audit program.

Co-hosted audits launch with innovative protocols

Gamma Protocol

The Gamma Protocol logo in bright red text with a futuristic, angular font.


We're excited to start our co-hosted audit program with Gamma, a sophisticated protocol for active liquidity management and market-making strategies. Referred by Guardian Audits, Gamma manages over $100M in Total Value Locked across 50+ trading pairs and 5 networks. Their automated strategies aim to maximize capital efficiency, reduce the cost of emissions, and maintain consistent in-range liquidity with low price impact.

Starting in February, security researchers can participate in Gamma's competitive audit with a prize pool of $50,000 USDC. This audit represents a crucial step in ensuring the security of Gamma's innovative liquidity management solutions.

Stay tuned for more info.

Looking ahead

The launch of co-hosted audits is a significant milestone in blockchain security. Blending private expertise with competitive reviews enhances the security of protocols and organizations while streamlining the process of multi-phase analysis. This collaborative approach provides in-depth expert analysis and diverse insights from our community of security researchers.

If you want to join our co-hosted audit program, get in touch. Whether advancing DeFi protocols or developing critical blockchain infrastructure, our thorough security reviews can help ensure your code is resilient and deployment-ready.

Secure your protocol today

Join some of the biggest protocols and companies in creating a better internet. Our security researchers will help you throughout the whole process.
Stay on the bleeding edge of security
Carefully crafted, short smart contract security tips and news freshly delivered every week.