For the complete documentation index, see llms.txt. This page is also available as Markdown.

8. Audits & Security

ORO prioritizes user protection across both smart contract infrastructure and physical asset custody. Security, transparency, and independent verification are embedded in the protocol.

8.1 Smart Contract Security

  • All smart contracts have been audited by Cantina (Spearbit Labs Inc.) and Adevar Labs

  • Our smart contract security audits are available on the following link: Click Here

  • Built on Solana SPL standards, using secure upgrade-controlled architecture

  • Fully non-custodial users retain control of their $GOLD at all times

  • Admin privileges are secured by multisig and time-based governance safeguards

8.2 Token Safeguards

  • Only KYC/KYB whitelisted wallets can mint, convert, and redeem

  • All token flows including minting, yield claiming, and redemptions are fully transparent and on-chain

8.3 Physical Gold Custody

  • $GOLD is backed 1:1 by vaulted gold

  • Legal title is held by a foundation, making the structure bankruptcy remote

  • Custody partners are insured and operate secure, professional-grade vaults

  • Gold is never sold, lent, or reused without the token holder's explicit action

8.4 Quarterly Third-Party Attestations

To maintain transparency:

ORO publishes quarterly third-party attestations by audit firm RSM International, confirming that the gold reserves fully back the tokens on a 1:1 basis. These attestations provide independent verification of the quantity and quality of the gold held in custody, reinforcing trust, transparency, and accountability for token holders.

Last updated