{"repo":"AmirhosseinHonardoust/Smart-Contract-Risk-Analyzer","free":true,"listed":false,"github":"https://github.com/AmirhosseinHonardoust/Smart-Contract-Risk-Analyzer","clone":"git clone https://github.com/AmirhosseinHonardoust/Smart-Contract-Risk-Analyzer.git","description":"A lightweight static analysis engine for Solidity smart contracts. Extracts code features, detects dangerous patterns (delegatecall, tx.origin, call.value), computes heuristic risk scores, and classifies contracts into Low/Medium/High risk levels. Includes multiple example vulnerabilities and a clean CLI for rapid security assessment.","language":"Solidity","stars":23,"topics":["audit-tools","blockchain-security","cli-tool","code-analysis","dapp-security","developer-tools","ethereum","evm","heuristic-model","python-project"],"license":"MIT","category":"blockchain-web3","readme_excerpt":"Smart Contract Risk Analyzer Static analysis + heuristic risk scoring for Solidity smart contracts --- Overview Smart Contract Risk Analyzer is a lightweight, extensible static analysis tool for auditing Solidity contracts. It uses rule-based heuristics , pattern detection , and surface-level code metrics to produce: A risk score (0–100) A risk level (Low / Medium / High) A detailed feature breakdown extracted from the contract’s source code A cryptographic source hash for traceability This project provides a minimal but powerful foundation for building more advanced analyzers, ML-driven detectors, AST-based analysis, or on-chain verification tools. --- Why This Project Exists Security is the #1 priority in smart contract development. Even simple mistakes, like unsafe access control, reentrancy windows, or misuse of delegatecall , can lead to millions in losses. Most developers: Don’t have access to high-end auditing tools Don’t know how to build static analyzers Want a lightweight tool they can run locally This project solves that by offering: A simple CLI-based analyzer A dangerous-pattern detector A clear scoring system A set of sample vulnerable contracts A structure designed for future expansion --- Features Static Feature Extraction The analyzer extracts: Feature Meaning ------------------ ---------------------------------------------- n lines Total number of code lines (size/complexity) n payable Count of payable functions has delegatecall High-risk opcode for proxy & ","default_branch":null,"files":null,"tree":[],"storefront":"/r/AmirhosseinHonardoust","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/AmirhosseinHonardoust/Smart-Contract-Risk-Analyzer/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}