Skip to content
View tr-Kalyan's full-sized avatar

Block or report tr-Kalyan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
tr-Kalyan/README.md

Kalyan TR

Smart contract security researcher. Active on Sherlock, Code4rena, and Guardian Audits. Background in regulated-domain QA (Finance, Healthcare) before transitioning to Web3 security.

Focus Tools Active Status


Validated Findings

Sherlock — Fluid DEX V2

  • MEDIUM: MEV-extractable liquidation penalty weighting (confirmed as part of #1114 duplicate family)

Guardian Audits — LimitBreak AMM Guardian Defender

  • MEDIUM: WETH-DEBT missing ETH fallback in _distributeOrCollectLiquidityToken (validated, payout pending)

Code4rena — Jupiter Lend

  • LOW: Finding downgraded from Medium during judging
  • LOW: Additional finding (C grade)

CodeHawks First Flights

  • 5 validated findings across educational contests

Active Engagements

  • Code4rena — Monetrix (results pending)
  • Code4rena — K2 LayerZero (in progress)

Methodology

  • Devil's filter: who benefits, what's the concrete trigger, what's the honest user harm?
  • Test-before-submit: validate findings with Foundry PoCs before submission
  • Falsification-first: kill weak hypotheses rather than padding reports
  • Multi-source cross-check: AI tools as suggestions, verify against spec and code

Education & Programs

  • Blok Capital Builder Cohort #1 (March-April 2026, taught by Nick Mudge)
  • Rektoff Launchpad Solana security bootcamp (current)
  • Master of Science in Computer Science (in progress)

Stack

Solidity, Foundry (forge test, invariant fuzzing), Slither, fork testing against mainnet state.


Projects

  • ModularGarden — ERC-2535 Diamond + ERC-4337 Account Abstraction. Built for Blok Capital Builder Cohort.
  • Async Settlement RWA Vault — ERC-4626 with T+1/T+2 settlement
  • Policy-Governed Agent Payments — Payment infrastructure for AI agents with on-chain policy enforcement

Contact

📧 Email: kalyansde1@gmail.com
🐦 X (Twitter): @kalyan__tr
💼 GitHub: @tr-Kalyan

Pinned Loading

  1. verifiable-rng-protocol verifiable-rng-protocol Public

    Solidity

  2. collateralized_debt_solvency_engine collateralized_debt_solvency_engine Public

    Solidity

  3. async-rwa-vault async-rwa-vault Public

    Solidity

  4. openzeppelin-contracts openzeppelin-contracts Public

    Forked from OpenZeppelin/openzeppelin-contracts

    OpenZeppelin Contracts is a library for secure smart contract development.

    Solidity

  5. policy-governed-agent policy-governed-agent Public

    TypeScript

  6. dao-governance-simulator dao-governance-simulator Public

    Solidity