Enter app

Frontend Risks

Risks that belong to this interface specifically.

  • Domain impersonation — always confirm the origin before signing anything, anywhere
  • Malicious or stale contract addresses injected into a build
  • Wallet provider spoofing by a browser extension
  • Misread preview figures taken as quotes

Current mitigations

  • No write path exists in this build
  • Addresses live in one configuration file and are currently null
  • Wallet access is read-only through an injected provider
  • Every derived figure is labelled estimated at the point of display