Security you can verify.
DeFi keeps suffering from exploits. Royco is built differently with multiple tier-one audits, formal verification, continuous monitoring, and robust operational practices, because security is our paramount priority.
- Bug Bounty
- $250K
- Audits
- 5
- Settlement
- 24h
- Monitoring
- 24/7






Eight layers of defense.
Royco does not depend on any oracle tied to secondary liquidity. Every price is either a fundamental oracle or a manually-maintained rate, updated based on an assessment of the underlying asset. This makes the protocol resistant to an entire class of price-manipulation attacks that have drained other DeFi systems.
Royco's complete audit history.
Firm | Engagement | Scope | Date | Report |
|---|---|---|---|---|
| Certora | Formal Verification | Core Invariants, Ongoing Specification Coverage | Jul 2026 | |
| WatchPug | Pendle Integration | Royco Tranches Pendle SY | Apr 2026 | |
| Certora | Full Protocol Audit | Core Protocol Contracts and Entry Point | Apr 2026 | |
| Hexens | Pendle Integration | Royco Tranches Pendle SY | Apr 2026 | |
| Hexens | Entry Point and Integrations | Entry Point and New Markets | Apr 2026 | |
| Nethermind | Royco Makina Strategy | Bridge between Concrete Earn v2 and Makina | Mar 2026 | |
| Hexens | Full Protocol Audit | Core Protocol Contracts | Mar 2026 | |
| Cantina | Competitive Audit | Public Competition from Whitelist Perspective | Feb 2026 | |
| Hexens | Whitelist Review | Core Protocol from Whitelist Perspective | Jan 2026 | |
| Hexens | Full Protocol Audit | Core Protocol Contracts | Jan 2026 |
No hot wallet. No single signer. No instant upgrades.
Hope is not a plan. We drilled for this long before.
Hand-picked security engineers and council members — named, on-call, and rehearsed. When the alarm trips, the room is already live. No hunting for who’s on-call. No improvising the chain of command.
Hypernative or the security council detects an anomaly. On-call rotation is paged immediately.
Incident commander convenes the on-call engineers, and security council on a dedicated channel.
If the anomaly is confirmed, the security council executes an instant pause. Queue settlement halts.
A public post-to-known-channels status update is issued. Depositors are informed before markets are.
A written post-mortem is prepared and published within 7 days of containment.
Hypernative or the security council detects an anomaly. On-call rotation is paged immediately.
Incident commander convenes the on-call engineers, and security council on a dedicated channel.
If the anomaly is confirmed, the security council executes an instant pause. Queue settlement halts.
A public post-to-known-channels status update is issued. Depositors are informed before markets are.
A written post-mortem is prepared and published within 7 days of containment.
The source is the truth. Fork it. Read it. Break it.
Investors who read reports. Not just pitch decks.
Vaults with nothing hidden. Managed in public, not in private.
Deposit with confidence.
You've read the dossier. The contracts, the audits, the timelocks, the queue. From here, it's your call.
This page documents the full security posture of Royco Dawn, and may include features that are currently in pipeline for an exhaustive release. The timelocks, queue delays, multisig, and monitoring described above are reviewed frequently and may change to tighten security. Specific parameters and implementation details remain subject to change as protocol evolves.