BlackHartBlackHart
Scores/PancakeSwap

PancakeSwap

MITHRIL

DEX / AMM · BSC + Multi-chain · $2B+ TVL · 30 contracts

Confidence 77%Z-Factor 0.87Updated 2026-05-06Public Score

Public risk assessment — scores are produced with the same methodology as monitored protocols

862
BRI Score
3004756508251000

Security Profile

Access Ctrl
82
Economic
85
Oracle
90
Compos.
80
Govern.
78
Maturity
72
Resilience
70
Supply Ch.
82
OpSec
78
Cascade
89
Min
70
Avg
81
Max
90

Audit History

Peckshield
2021-04
SlowMist
2022-01
BlockSec
2023-03

Bug Bounty Program

$100,000
Max payout on Immunefi
View Program →

Assessment

BSC's dominant DEX, Uniswap V2/V3 fork. Proven AMM model inherited but fork penalty on D6 maturity. Centralized team governance (D5). No exploits, solid operational history. BSC ecosystem context differs from Ethereum.

Dimension Breakdown

How scores work →
Access Control
Weight 18%78% conf
82
Strong
  • Uniswap V2/V3 fork ACL with MasterChef v3
  • Timelock on admin operations
  • Cake pool and IFO admin controls
  • Multi-chain deployment adds admin surface
Economic Soundness
Weight 13%82% conf
85
Strong
  • Proven AMM model (Uniswap fork)
  • CAKE tokenomics with burn mechanism
  • IFO, lottery, prediction markets add secondary economic surface
  • vCAKE staking model for fee sharing
Oracle Integrity
Weight 13%88% conf
90
Excellent
  • TWAP from AMM pairs (standard)
  • Chainlink for prediction markets and farms
  • No novel oracle mechanism (inherited from Uniswap)
  • Standard price feed integration
Battle-Tested Maturity
Weight 12%80% conf
72
Good
  • Live since September 2020 (56 months)
  • Uniswap V2/V3 FORK - inherits code but not innovation credit
  • Fork penalty: derivative codebase, not original research
  • No protocol-level exploit
  • Z-factor: 0.880
Governance & Upgradeability
Weight 10%72% conf
78
Good
  • PancakeSwap team retains admin keys and upgrade authority
  • CAKE governance proposals but limited on-chain execution
  • Community influence via voting but team controls deployment
  • Less decentralized than Uniswap governance
Adversarial Resilience
Weight 10%95% conf
70
Good
  • Score derived from continuous adversarial security research
Operational Security
Weight 10%72% conf
78
Good
  • Active development team, regular updates
  • BSC-native monitoring tools
  • Less transparent operational practices than ETH-native
  • Multi-chain ops increasing complexity
Compositional Risk
Weight 5%75% conf
80
Strong
  • BSC-native with Ethereum, Arbitrum, zkSync expansion
  • Integration with BSC DeFi ecosystem (Venus, Alpaca)
  • Multi-chain expansion adds composition surface
  • Syrup pools integrate external protocols
Cascade Exposure
Weight 5%60% conf
89
Strong
  • Appears in 2 cross-protocol cascade chain(s)
  • Member of 3 dependency cluster(s)
  • Score: 89/100 (higher = more isolated from systemic risk)
  • Source: cross_protocol_composition.json dependency analysis
Supply Chain
Weight 4%78% conf
82
Strong
  • BSC Solidity toolchain (compatible but different ecosystem)
  • Modified Uniswap codebase with custom additions
  • Verified on BSC and expansion chains
  • Some custom libraries diverge from Uniswap upstream

Risk Drivers

Primary risk factors driving this score, ordered by severity.

Adversarial Resilience70
Battle-Tested Maturity72
Governance & Upgradeability78

Adversarial Risk Signals

Observable security posture indicators. These signals reflect publicly verifiable information and responsible disclosure outcomes. No specific vulnerability details are exposed.

Disclosure HistoryNot Assessed
Remediation VelocityNot Assessed
Bug Bounty ProgramNot Assessed
Audit CoverageNot Assessed
Incident HistoryNot Assessed
Deployed 2020-09-20Z-Factor 0.87010 active dimensions

Score History & Verification

Score provenance tracking begins with the next reassessment.

On-Chain Data

Protocol Slug
"pancakeswap"
Oracle
BRORegistry (Base)
Evidence
IPFS (pinned)
Staleness Threshold
24 hours
Read Score
registry.getScore("pancakeswap")

Reduce exploitable risk

BlackHart Monitoring provides continuous adversarial analysis, vulnerability detection, remediation support, and verified reassessment when your risk posture improves.