Choose Your Path¶
Start from the job you need to do this week. Each path gives a 30/60/90-day plan, must-read pages, matching checklists, and ten high-signal resources.
For aspiring auditorsBuild exploit reasoning, invariant writing, report reading, and chain-specific testing habits. For protocol foundersTurn security into launch gates, owners, evidence, signer operations, and user trust. For protocol security leadsRun audit readiness, monitoring, bounty intake, incident drills, and executive evidence. For frontend and wallet engineersProtect wallet-facing pages, signing flows, smart accounts, browser-shipped code, and dependencies. For incident respondersPrepare containment, evidence, simulation, comms, signer safety, and post-incident closure. For compliance and investigationsConnect public reports, wallet activity, domain evidence, escalation paths, and case records.
How to use these paths¶
- Pick the persona closest to the current job.
- Follow the first 30-day actions before adding more tooling.
- Use linked checklists as evidence gates, not as generic to-do lists.
- Keep the resource list curated. Add new links only when they improve a real workflow.
No endorsement
Resource listings are editorial references, not endorsements. Verify third-party tools, claims, licenses, and maintenance status before relying on them.