
Security News
OWASP 2025 Top 10 Adds Software Supply Chain Failures, Ranked Top Community Concern
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.
@devprotocol/protocol-v2
Advanced tools

This repository is the place to develop smart contracts for Dev Protocol.
First, install this repository as an npm package.
> npm i -D @devprotocol/protocol-v2
You can use the Dev Protocol interface by importing it from a Solidity file.
import {IAddressRegistry} from "@devprotocol/protocol-v2/contracts/interface/IAddressRegistry.sol";
import {IPropertyFactory} from "@devprotocol/protocol-v2/contracts/interface/IPropertyFactory.sol";
contract TestContract {
function validatePropertyAddress(address _property) external view {
IAddressRegistry registry = IAddressRegistry(0x0a15Ccf5E6029AaAeBc5F01b09d3C240Dc56c5f9);
IPropertyFactory propertyFactory = IPropertyFactory(registry.registries("PropertyFactory"));
require(propertyFactory.isProperty(_property), "not property address");
}
}
This is an example of logic that uses the PropertyFactory contract feature of the Dev Protocol to validate if it is a Property address.
The available interfaces can be found in "node_modules/@devprotocol/protocol-v2/contracts/interface/".
AddressRegistry holds the addresses of the contracts used in the Dev Protocol.
AddressRegistry address
arbitrum mainet:0x0a15Ccf5E6029AaAeBc5F01b09d3C240Dc56c5f9
arbitrum rinkeby:0xE75929F46355ad8C5C558755D836364f119BdB22
Read the contributing guide, and create PR when you have time. 🧚✨
Executing the following command will compile each contract.
git clone https://github.com/dev-protocol/protocol-v2.git
cd protocol-v2
yarn
yarn generate
run the following command to test each contract.
yarn test
If you use Visual Studio Code, we recommend that you install the following plug-ins:
EditorConfig
vscode-eslint
solidity
FAQs
Securitize for Internet assets
The npm package @devprotocol/protocol-v2 receives a total of 11 weekly downloads. As such, @devprotocol/protocol-v2 popularity was classified as not popular.
We found that @devprotocol/protocol-v2 demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.