Ethereum mainnetTransactions use real assets. Access is KYC-gated; review the legal and risk disclosures before transacting.

Corrovera dual-chain source ensemble

External review. This review was conducted by a party other than Forest Road. What the engagement did and did not cover is set out under Method and in the report itself, the limits of a review bear on what its findings are worth, and should be read alongside them. It does not by itself authorize a production launch. It reviews the source at the baseline below, which is not necessarily identical to the code deployed on any network. Forest Road Vault is live on Ethereum mainnet; its Solana curator vault remains on devnet and BSC has its own deployment status. An open finding applies only to the product, version and deployment state named by this review. Each review's scope bounds what its clean result is worth. Nothing here is a securities-law representation; token characterization is a matter for counsel.

Scope
One source file per review manifest, covering 125 files. Dependency closure was not established, and deployment scripts were outside scope. Cross-file invariants and ceremony controls could therefore not be cleared by silence in this round.
Method
Two-reviewer ensemble over every scoped file, producing 317 claims across 88 files, followed by correctness triage, dependency-aware verification, full-suite reruns and remediation packages.
Reviewed baseline
125 production source files across the Ethereum and BSC trees
Internal report
audit-reports/corrovera-dual-chain-2026-09-13/CORROVERA-ENSEMBLE-REPORT.md

Findings and remediation history

How to read the claim count

The review produced 317 claims across 88 of 125 scoped source files. That number is not a count of 317 confirmed defects. Reviewers agreed on some claims, split on others, and two were explicitly refuted in the original result. Both proposed High claims lacked consensus and were later refuted after interacting dependencies were visible.

The report's headline table at publication recorded 35 two-reviewer Medium claims and 31 unresolved Medium claims. Later correctness work consolidated duplicate mechanisms, restored the omitted historical regression corpus, read the interacting contracts, and corrected the supported issues. The findings list on this page records the material groups and current status; the full claim corpus remains in the named report.

Scope limit

Each file was reviewed alone. Dependency closure was explicitly not established, and deployment scripts were outside scope. Sixty-eight claims named that limitation themselves. The round could find local defects, but it could not clear cross-contract accounting, role topology, ceremony validation or deployment behavior.

Later full-suite, dependency-aware, diff and deployed-address reviews supply evidence for the areas they actually exercised. They do not retroactively expand this review's scope.

High-severity candidates

Neither proposed High survived dependency-aware verification. The apparent ReserveCascade issue depended on a value being counted by backingValue() that the interacting contract does not count. The ClaimBridge candidate also failed once its sibling checks and actual call path were included. The register preserves the proposed rating and marks the group superseded rather than pretending the original readers agreed.

Earlier roundCantina Managed review of the supply gateway