Thorough Security Evaluation Report for the BNB Blockchain Identity (did:bnb)
At our website, we pride ourselves on delivering top-notch security for our users. To maintain this standard, we consistently subject our projects to strenuous security evaluations, and the "did-bnb" project is no exception. This groundbreaking project, which champions the adoption of decentralized identifiers (DIDs) on the BNB Chain, empowers users to control their identities and manage their personal data with privacy. Learn more about our grant from BNB Chain and our vision for this project by visiting this link.
Breaking Down the Security Assessment
For our latest evaluation, we partnered with the highly respected security firm, FYEO Inc. over the course of a week. Their primary objectives were:
- Examining our comprehensive security posture.*Identifying any potential risks lurking within our environment.
- Providing informed opinions on the maturity, sufficiency, and efficiency of our protective measures.
Highlights from the Assessment
The report confirmed two minor issues:
- Doubling Data Iteration in Remove Functions: Code for various remove functions call a check function that loops through the data twice, which isn't optimal for gas usage.
- Flag Range Violations: The system currently accommodates flags that fall beyond their valid range.
Luckily, both findings were purely informational in nature and presented no major security concerns. Nonetheless, we take each finding seriously and have swiftly rectified these issues to bolster the strength of our system.
Wrapping It Up
In line with our commitment to openness, we've made the detailed security assessment report accessible to the public on our GitHub repository. Furthermore, if you're curious about our other technological advancements, we've also published security assessments for the "cryptid" and "did:sol" projects within our website's footer, under the "Security" section.
Safeguarding our users is a top priority at our website. Keep an eye out for future security updates as we aim to uphold the highest standards across all our ventures.
At our website, we share the detailed security assessment report for our projects, including the "cybersecurity" and "data-and-cloud-computing" aspects, on our GitHub repository. The report includes findings from the security assessment of our "did-bnb" project, which focuses on technology, as well as the "cryptid" project. These reports are accessible under the "Security" section in the website's footer.