The team fills out a structured operational security questionnaire covering who has access to what, how keys move, which SaaS platforms are in use, and how a deployment reaches production. Most of it is answerable without a call.
Managed Security
Your operational security, run with you and kept current.
Smart contract security depends on the humans, infrastructure, and processes around the code, and all three change every week. Guardian hardens the operational paths adversaries actually target, then stays on the engagement as signers, systems, and deployments change.
Reduce operational attack surface, and keep it reduced.
We assess how sensitive actions happen in practice: who can execute them, what can go wrong, and how the team would detect and contain compromise. Then we hold that line as the team grows, the stack changes, and access spreads.
The engagement runs across every platform the company depends on rather than deep into a single one: the cloud consoles, the code host, the chat tools, the social accounts, the laptops. Most operational compromises do not start at the most guarded system. They start at the one nobody remembered was connected to it, which is usually the one added last month.
- Key management Multisig structure, signer hygiene, custody assumptions, transaction simulation, and access recovery.
- Access and permissions Who can do what across every system, whether SSO and 2FA are actually enforced, how joiners and leavers are handled, and which accounts still work after someone leaves.
- Secrets handling Where API keys, tokens, and private keys are stored and shared day to day, who and what can read them, and how often they are rotated in practice.
- Release process Deployments, upgrades, verification, environment separation, and change-control procedures.
- Infrastructure Admin panels, CI/CD, automation servers, RPC dependencies, monitoring systems, bots, and privileged backend services.
- Devices and developer hygiene Laptop and phone security for the people holding keys, disk encryption, updates, and what an attacker gets from one compromised workstation.
- Communications and social accounts Where sensitive decisions are discussed, and how the X, Discord, and Telegram accounts users trust are protected from takeover.
- Incident readiness Runbooks, escalation channels, emergency roles, and rehearsal of containment decisions.
How it works
Your answers are measured against Guardian's operational security standard, built on the SEAL operational security framework and the Web3 OpSec Standard, so nothing is graded on instinct. Anywhere the answers are ambiguous, contradictory, or point at real risk, a Guardian engineer digs in directly with the people who operate the system.
The baseline is then maintained rather than filed. New signers, new services, and new deployment paths are reviewed as they land, findings are tracked to closed, and the team has a security engineer to reach when a decision cannot wait for the next audit.
Typical scope
Personal security, signer workflows, social recovery, and approval discipline, revisited as the signing set changes.
How contracts, configs, and upgrades move from branch to chain, and what changed since the last release.
Pausing, communication, multisig coordination, and forensic preservation, rehearsed before they are needed.