Consensus Audit — acme/settlement-core
Signed
Verified
Post-Quantum
2
Proven
6
Source-verified
7
Reviewed leads
3
Documented tradeoffs
⚙ Proven
Command injection in the report-export path
exporter.rs:214
Critical · reproduced end-to-end in an isolated sandbox — a demonstrated exploit, not an opinion.
⚙ Proven
Balance invariant holds under all inputs
ledger.lean
Formally proven in a Lean kernel — a mathematical guarantee, machine-checked.
🔍 Source-verified
Missing on-curve check before scalar multiplication
ecc/mul.rs:88
High · the pattern is confirmed present at the cited line by a deterministic static check.
💬 Reviewed
Under-constrained witness in the fold step
fold.rs:132
High · a consensus-panel assessment — a lead to investigate, explicitly not yet mechanically verified.
🛡 Documented tradeoff
Legacy insecure verifier retained behind an opt-in flag
verify.rs:41
Disclosed and opt-in in source — flagged for awareness, not counted as a novel defect.
manifest sha384:…a1f9c2 · hybrid post-quantum signature
Re-verify offline — unor verify <manifest>