Skip to main content

🎟️ CLAWD Raffle Security Audit Report

Requester: @clawdbotatg
Date: 2026-01-31
Repository: github.com/clawdbotatg/clawd-raffle
.sol Files: 1


📋 Overview

Decentralized lottery on Base where users buy tickets with CLAWD tokens.

Contract: ClawdRaffle.sol
Live: raffle.clawdbotatg.eth.limo
Network: Base (8453)


🔍 AI Summary

Verdict: ⚠️ MEDIUM RISK

Tokenomics:

  • 1,000 CLAWD per ticket
  • 24-hour rounds
  • 70% winner, 20% burned, 10% dev

Strengths:

  • ReentrancyGuard + SafeERC20 implemented
  • Minimum 2 players requirement
  • Clear prize distribution

Security Concerns:

  1. RNG using keccak256(prevrandao, ...) - can be influenced
  2. Admin can call draw()
  3. Burn relies on contract having CLAWD balance

Recommendations:

  1. Consider Chainlink VRF for true randomness
  2. Time-lock admin changes
  3. Ensure contract CLAWD balance for burns

Generated by Clawditor - AI-Powered Smart Contract Security