The Balancer v2 exploit highlights how complex protocol evolutions can introduce new risks. OpenZeppelin audited earlier versions of the v2 codebase, prior to the introduction of the attack vector that was later exploited. Our analysis and lessons for the community: https://lnkd.in/dZmcc7CX
OpenZeppelin
Software Development
Distributed organization, World 13,716 followers
Founded in 2015, OpenZeppelin is the world leader in securing blockchain applications and smart contract systems.
About us
Founded in 2015, OpenZeppelin is the world leader in securing blockchain applications and smart contract systems. Its bedrock open source Contract Libraries are a public good and industry standard for smart contract development. OpenZeppelin’s professional expertise, unified with the Defender developer security platform, integrates through clients’ development lifecycles, so teams can plan, code, audit, deploy and operate projects faster and more safely. OpenZeppelin secures success for over a thousand trusted crypto protocols and organizations, including Coinbase, Ethereum Foundation, Compound, Aave, Uniswap, Matter Labs and ANZ Bank. With the success of our product, our security audits work, and our educational efforts, we have set industry standards for building secure systems in a fast-growing industry, which presents new programming paradigms. We are now excited to offer a development platform that will help the growing number of developers working on top of decentralized protocols build the applications that will reach mass adoption.
- Website
-
https://openzeppelin.com/
External link for OpenZeppelin
- Industry
- Software Development
- Company size
- 51-200 employees
- Headquarters
- Distributed organization, World
- Type
- Privately Held
- Founded
- 2015
Locations
-
Primary
Get directions
Distributed organization, World 0, OO
Employees at OpenZeppelin
Updates
-
OpenZeppelin Contracts for Stellar v0.5.0 is now live 💫 What's new: • Smart Accounts on Soroban SDK — flexible auth and policy enforcement • RWA 3643 standard — built for institutional tokenization on Stellar • Tokenized Vaults — accelerating DeFi with yield-bearing assets Explore the full release: https://lnkd.in/d3AhchKz
-
We are excited to announce our partnership with the Sui Foundation to bring smart contract development in Move to the next level 💥 Together, we’re building new, audited primitives that combine speed, composability, and security empowering developers to build the best onchain apps. Read the full partnership announcement: https://lnkd.in/dA3cQYcG
-
From smart contracts to custody to settlement—tokenized finance needs infrastructure that institutions can trust. Our CEO Demian Brener joins leaders from Centrifuge, Coinbase, and Copper.co at SmartCon NYC by Chainlink Labs to discuss what it takes to make tokenization work at scale. 📅 Nov 5, 11:15am ET | "Tokenized Markets: Infrastructure in Action" 🗣️ Speakers: • Martin Quensel, Co-founder at Centrifuge and Anemoy • Anthony B., President at Coinbase Asset Management • Amar Kuchinad, CEO at Copper.co Moderator: Michael del Castillo, M.Sc.
-
-
Institutional onchain finance demands both privacy AND security 🔒 OpenZeppelin is partnering with Miden to bring proven security frameworks to privacy-first blockchain infrastructure—enabling private custody, OTC trading, and provable compliance. Privacy at the edge. Security at the core.
🔸 Miden × OpenZeppelin 🔹 Security, standards, privacy To bring privacy and safety to real-world finance, Miden is partnering with OpenZeppelin, the industry standard for smart contract security. OpenZeppelin’s frameworks and audits secure most onchain assets today. Their standards defined how tokens, access control, and composability work across the industry. Together we’re applying those same practices to privacy-first infrastructure. The partnership focuses on three pillars: 1️⃣ Defining Miden’s fungible token standard (the ERC-20 equivalent for Miden) 2️⃣ Building a private multisig and shared-state model 3️⃣ Reviewing and auditing core smart contract libraries The goal: make privacy safe, composable, and ready to scale real-world finance applications. Privacy needs infrastructure. Security makes it real. Miden 🤝 OpenZeppelin
-
Proud to support ETH LATAM 2025 🇧🇷 See you in Sao Paulo!
We're thrilled to announce OpenZeppelin as an official sponsor of ETH LATAM 2025! A true pioneer born in Argentina, Open Zeppelin's open-source smart contract libraries are the backbone of countless onchain apps globally, ensuring security and reliability in the blockchain ecosystem. We're especially proud to highlight their deep roots in Latin American talent across the region. These developers are instrumental in securing the future of blockchain, from gold-standard smart contract audits to enterprise-grade security solutions for financial institutions, protecting billions in onchain value.. Join us at ETH Latam 2025 to connect with the OpenZeppelin team and explore their contributions to a more secure and innovative blockchain ecosystem.
-
-
OpenZeppelin reposted this
Even minor flaws in smart contracts can lead to billion-dollar losses. In our newest blog, John Neufeld (OpenZeppelin, BSSC Member) outlines how the BSSC is working to establish institutional-grade standards for secure onchain development. Read the full blog now: https://lnkd.in/enhEY46U
-
OpenZeppelin reposted this
A few months ago, our team developed a trust-minimized model for a yield strategy proposed to the Compound Labs DAO, aiming to balance flexibility with accountability in on-chain treasury management. Recently, OpenZeppelin published their review of our approach, and we wanted to share a quick summary and some reflections👇 The challenge: Once funds are transferred to a recipient, they can easily evolve away from their intended purpose. DAOs need reliable mechanisms to close that accountability gap without slowing down operations. Our solution: We implemented a dual-Safe architecture consisting of: ➡️ An Avatar Safe secured with the Zodiac Roles modifier, and ➡️ A Manager Safe with scoped permissions to act on behalf of the Avatar. This setup allows granular permissions, precisely defining which contracts and functions can be called (e.g., approve, withdraw, supply), including parameter ranges that keep every action explicit and auditable. In our Compound pilot, 35,200 COMP token was allocated to a yield strategy. The Manager Safe could execute approved calls swiftly, without ever having unrestricted control. Because permissions are narrowly defined upfront, managers can move efficiently within limits. No lengthy DAO votes were required whilst the Avatar Safe remains accountable if issues arise. OpenZeppelin recognized this approach as a way to reduce operational risk while preserving speed, transparency, and oversight. We’re grateful for their thoughtful review 🙏 For us, the key takeaway is that treasury management isn’t just about generating yield, it’s about designing for trust. This experiment is one step toward more resilient, transparent, and accountable DAO finance. You can read the full OpenZeppelin review here: 🔗 https://lnkd.in/eUnb5VRR
-
354M active wallets have interacted at least once with OpenZeppelin Contracts 📈 That's more wallets than Netflix subscribers worldwide. OpenZeppelin is the standard for secure smart contract development.
-
-
Securing the infrastructure that allows governments and financial institutions to move onchain 🔒
ADI Chain is now secured by OpenZeppelin. Governments require the highest security standards. To meet these needs, OpenZeppelin has completed an audit of ADI Chain to ensure best-in-class security. Their auditors completed: → Pre-mainnet evaluation of core smart contracts and chain infrastructure → Auditing of token contracts to meet bank-grade security standards → Comprehensive review of ADI Chain’s critical systems. With this ongoing partnership, we will ensure governments and their citizens can rely on our infrastructure to power their most important functions, from transacting digital money to storing government IDs and more. Learn more about the audit: https://lnkd.in/dderJiNS
-