PolyPulsar (Games)
- Completed (2)
Paladin Rush
-
PolyPulsar Pulkamon
Commissioned
15 Aug 2021
Completed
25 Aug 2021
Contracts Audited
PulsARENA 0xa7aa5a6d28c29dcb2d1e906fca16840e2a07327 Distribution 0xc4a7b91539acc7cf76c7ea448a6e617001b37d49 The client has wished to leave their deployed contracts unverified in the explorer to protect their intellectual property. We have manually verified that the deployed code matches the one we have audited.
View Audit Report
IssuesRisk SummaryFound Resolved Partially Resolved Acknowledged
(no change made)High 1 1 – – Medium 5 5 – – Low 5 2 – 3 Informational 19 13 1 5 Total 30 21 1 8 The PolyPulsar games are ambitious and fun. To generate randomness, they make use of the ChainLink oracle which allows for more secure randomness functionality than other implementations which are often vulnerable to exploits. The code is large and ambitious, but the team has done their best effort to still test everything after implementing the recommended changes. One of the comments our auditors had was that the state-space for the games was large which means a lot of different things can be done. This is great but it also introduces some risk that things might have been overlooked. The team and Paladin have given our best effort to make sure this has not happened.
Finally, the game is heavily centralized which means you should trust the team before playing with significant sums. The team seems to be well established within the community which does significantly reduce the risk of them using these privileges maliciously, however, the chances are always non-zero and furthermore there’s always a non-zero chance for the private keys to be hacked.
When playing in these contracts the main risks are:
- The game profitability is heavily linked with how experienced your hunter or pet is, thus when you only play for a few times it might be more for fun than for profit. In general, a good strategy might be necessary.
- The private keys of the team are leaked and misused to reconfigure the game (or the team turns malicious and abuses their privileges).
- The volatile currencies lose value.
-
PolyPulsar PolyGalactic
Commissioned
15 Aug 2021
Completed
25 Aug 2021
Contracts Audited
PolyGalactic 0xae436b8b6402090aa8b66a97770a195f9f2ced60 The client has wished to leave their deployed contracts unverified in the explorer to protect their intellectual property. We have manually verified that the deployed code matches the one we have audited.
View Audit Report
IssuesRisk SummaryFound Resolved Partially Resolved Acknowledged
(no change made)High 3 3 – – Medium 4 3 1 – Low 5 3 – 2 Informational 21 12 2 7 Total 33 21 3 9 The PolyPulsar games are ambitious and fun. To generate randomness, they make use of the ChainLink oracle which allows for more secure randomness functionality than other implementations which are often vulnerable to exploits. The code is large and ambitious, but the team has done their best effort to still test everything after implementing the recommended changes. One of the comments our auditors had was that the state-space for the games was large which means a lot of different things can be done. This is great but it also introduces some risk that things might have been overlooked. The team and Paladin have given our best effort to make sure this has not happened.
Finally, the game is heavily centralized which means you should trust the team before playing with significant sums. The team seems to be well established within the community which does significantly reduce the risk of them using these privileges maliciously, however, the chances are always non-zero and furthermore there’s always a non-zero chance for the private keys to be hacked.
When playing in these contracts the main risks are:
- The game profitability is heavily linked with how experienced your hunter or pet is, thus when you only play for a few times it might be more for fun than for profit. In general, a good strategy might be necessary.
- The private keys of the team are leaked and misused to reconfigure the game (or the team turns malicious and abuses their privileges).
- The volatile currencies lose value.