Skip to main content
Trustblock is a public security record for web3 projects. The API returns a project’s record by slug, or by chain and contract address; the card, the label and the widget show its first lines on other sites. Audit firms publish their audits on Trustblock; each audit is linked to a project, to the contracts it covers and to the firm that published it, and lists the findings the report contains.

What you can do with it

Read audits

Look up a project and see which audits are published for it, who published them, and what they found. Each report file is stored on IPFS, where its address is derived from its content.

Publish audits

Audit firms publish through the app or the API. Findings carry a severity and a status: fixed, not fixed or acknowledged.

Embed labels and widgets

A project label and an audit firm widget you add to your page with a script and a div.

Call the API

A project’s published audit state as JSON, and two compact cards for block explorers.

What Trustblock states, and what it does not

A project page, a label or a card describes what is published on Trustblock. When Trustblock holds no audit for a project, it says so; that is not a statement about whether the project has been audited elsewhere.