defirisk.co
rubric v1.7.0

Signed/unsigned arithmetic confusion

Hyperlane's assessment for RD-F-018 — scored gray on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

No symbolic execution output available. Solidity 0.8.x provides built-in overflow/underflow protection. No specific signed/unsigned confusion identified in surface-level source inspection, but full verification requires tool run.

Sources #

  • Curator note
    Missing symbolic execution output — pipeline_unimplemented gapSymbolic execution required; Solidity 0.8.x overflow protection present but signed/unsigned confusion requires dedicated analysisretrieved 2026-05-17

Methodology #

Determine whether signed-integer conversions or comparisons where unsigned was intended exist in the deployed bytecode/source.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol hyperlane factor RD-F-018 score gray collected_at 2026-05-16 23:03:56