Audits for DeFi
Smart contract audits for decentralized finance systems, focused on derivatives and vaults.
- derivatives
- derivative integrations
- morpho vaults
Use Havu to combine trusted AI security tools into one scan, deduplicate findings, and reduce false positives. For complex software, SCAS's senior researchers provide audits and R&D.











Combines trusted AI security tools into one scan, deduplicates findings and reduces false positives, saving hours of developer time.
Use Havu
HavuSmart contract audits for decentralized finance systems, focused on derivatives and vaults.
Research and development of formal systems, internal security tooling or IP protection against AI.

In a fully digital world, the protection of user data, operations, and assets is essential for a working society. SCAS protects the systems people and institutions rely on.

Reviewed a perpetuals launch for critical paths, simplified implementation risk, and reported launch-blocking vulnerabilities.
View Report
Researchers of SC Audit Studio worked as subcontractors for sherlock on the collaborative audit of Predict.Fun, a decentralized prediction market protocol.
Learn More
Linus (oot2k) of SC Audit Studio worked as subcontractors for sherlock on the collaborative audit of 1inch, a decentralized exchange aggregator protocol.
View Report
Linus (oot2k) of SC Audit Studio worked as subcontractors for sherlock on the collaborative audit of Omen Perpetual, an innovative perpetual protocol.
View Report
SCAS is a boutique research studio for teams that need real security without overhead. The team brings security research, protocol review, partnership context, and product judgment into the same room.
Since founding in Helsinki in 2024, the studio has completed 45+ full security audits and helped protect more than $13M in live funds.

Linus has helped protect $13M+ in live funds, disclosed 100+ vulnerabilities, and earned $150K+ in public bug bounties across CTFs, bug bounties, and production security reviews.

Ihtisham has earned top-5 competitive audit finishes, published research on 150+ protocols, and found critical bugs across cross-chain, RWA, staking, and lending systems.

Kinako brings experience from 3 organizations: Uniswap, the Ethereum Foundation, and the XRP Foundation, connecting protocol-security work with technical teams and partners.

A look at using AI to draft invariants, tests, and specifications while reviewers and provers establish assurance.
Research on using LLMs and Glider to exploit a privacy protocol and improve vulnerable smart contract reconnaissance.
A case study on how a small edge case can lock liquidity provider funds when accounting and position flows meet.
A field guide to Daml-specific security vulnerabilities and how to fix them, for teams building on Canton.

Stop spending time searching for the right tool, use Havu to use all of them. Bring in SCAS researchers when working on software that matters.
Book a Security Review