Capability and ownership
Who holds the admin capability, whether it can be transferred, and what happens if it is lost. Move makes ownership explicit, which means mistakes are explicit too.
Move’s resource model eliminates entire vulnerability classes by construction: you cannot accidentally duplicate or drop a resource. What remains is logic, capability handling and the parts of your design the type system cannot check for you.
Who holds the admin capability, whether it can be transferred, and what happens if it is lost. Move makes ownership explicit, which means mistakes are explicit too.
Shared versus owned objects on Sui, dynamic fields, and the concurrency implications of each. Sui’s parallel execution makes some assumptions about ordering unsafe.
Move Prover specifications where the codebase supports them, a genuine advantage over EVM auditing when the invariants can be stated precisely.
Same tiers as everything else. Rust and Move carry a small premium over Solidity because the reviewer pool is smaller and the codebases are usually denser.
| Tier | Scope | Price |
|---|---|---|
Snapshot Real findings on one contract, in 72 hours |
1 contract · ≤200 LoC | Free72 hours |
Single contract Full manual review of one contract, all severities |
≤500 LoC | $400–7003–5 days |
Project audit Whole codebase, PoC exploits for high and above, re-review |
≤1,500 LoC | $1,500–2,5007–10 days |
Protocol audit Multi-contract, architecture, oracle and governance review |
1,500+ LoC | $4,000–6,0002–3 weeks |
Continuous Review on every commit, for teams shipping weekly |
Rolling scope | From $800/moRetainer |
Up to 200 lines, manually reviewed, findings within 72 hours. The fastest way to judge whether we know this stack.