Tangle is a revolutionary and experimental token that promotes itself by rewarding those who increase Tangle's attractiveness. Tangle will also be used in the upcoming deFi zero-consensus prediction market system Forutsi.
Tangle.diamondCut(Tangle.FacetCut[],address,bytes) (#175-211) uses delegatecall to a input-controlled function id
- (success) = _init.delegatecall(_calldata) (#207)
Avoid using delegatecall. Use only trusted destinations.
Additional information: link
Unable to find manual contract audit (e.g. Certik, PeckShield, Solidity...)
Contract ownership is not renounced (belongs to a wallet)
Tangle.facets().facet (#219) is a local variable never initialized
Initialize all the variables. If a variable is meant to be initialized to zero, explicitly set it to zero to improve code readability.
Additional information: link
Reentrancy in Tangle.diamondCut(Tangle.FacetCut[],address,bytes) (#175-211):
External calls:
- (success) = _init.delegatecall(_calldata) (#207)
Event emitted after the call(s):
- DiamondCut(_diamondCut,_init,_calldata) (#210)
Apply the check-effects-interactions pattern.
Additional information: link
Tangle.fallback(bytes) (#48-66) uses assembly
- INLINE ASM (#51-65)
Tangle.removeSelector(bytes4,address) (#103-131) uses assembly
- INLINE ASM (#116-118)
Tangle.replaceSelector(bytes4,address) (#137-167) uses assembly
- INLINE ASM (#150-152)
Do not use evm assembly.
Additional information: link
Tangle.replaceSelector(bytes4,address) (#137-167) has costly operations inside a loop:
- addresses.pop() (#161)
Tangle.removeSelector(bytes4,address) (#103-131) has costly operations inside a loop:
- addresses.pop() (#127)
Use a local variable to hold the loop computation result.
Additional information: link
Pragma version^0.8.9 (#3) necessitates a version too recent to be trusted. Consider deploying with 0.6.12/0.7.6/0.8.7
solc-0.8.9 is not recommended for deployment
Deploy with any of the following Solidity versions: 0.5.16 - 0.5.17, 0.6.11 - 0.6.12, 0.7.5 - 0.7.6 Use a simple pragma version that allows any of these versions. Consider using the latest version of Solidity for testing.
Additional information: link
Low level call in Tangle.diamondCut(Tangle.FacetCut[],address,bytes) (#175-211):
- (success) = _init.delegatecall(_calldata) (#207)
Avoid low-level calls. Check the call success. If the call is meant for a contract, check for code existence
Additional information: link
Parameter Tangle.diamondCut(Tangle.FacetCut[],address,bytes)._diamondCut (#176) is not in mixedCase
Parameter Tangle.diamondCut(Tangle.FacetCut[],address,bytes)._init (#177) is not in mixedCase
Parameter Tangle.diamondCut(Tangle.FacetCut[],address,bytes)._calldata (#178) is not in mixedCase
Parameter Tangle.facetFunctionSelectors(address)._facet (#231) is not in mixedCase
Parameter Tangle.facetAddress(bytes4)._functionSelector (#256) is not in mixedCase
Follow the Solidity naming convention.
Additional information: link
Average 30d PancakeSwap volume is less than $100. Token is either dead or inactive.
Average 30d number of PancakeSwap swaps is less than 1. Token is either dead or inactive.
Average PancakeSwap trading volume, liqudity, number of swaps are extremely low. Token seems to be dead.
Contract has 5% buy tax and 5% sell tax.
Taxes are low but contract ownership is not renounced. Token has a high risk of becoming a honeypot.
Average 30d PancakeSwap liquidity is low.
Token has only one trading pair
Unable to crawl data from the website
BscScan page for the token does not contain additional info: website, socials, description, etc.
Additional information: link
Unable to find token on CoinMarketCap
Additional information: link
Unable to find token/project description on the website or on BscScan, CoinMarketCap
Unable to find token contract audit
Unable to verify token contract address on the website
Unable to find audit link on the website
Unable to find whitepaper link on the website
Unable to find Telegram link on the website
Unable to find Twitter link on the website
Token is not listed at Mobula.Finance
Additional information: link
Unable to find token on CoinHunt
Additional information: link
Token has a considerable age, but we're still unable to find its website
Token has no active CoinMarketCap listing / rank
Token has a considerable age, but social accounts / website are missing or have few users
Token has a considerable age, but average PancakeSwap 30d trading volume is low
Young tokens have high risks of price dump / death
Young tokens have high risks of price dump / death
Token has relatively low CoinGecko rank
Telegram account has relatively few subscribers
Twitter account has relatively few followers
Last post in Twitter was more than 30 days ago
Unable to find Blog account (Reddit or Medium)
Unable to find Youtube account
Unable to find Discord account