This smart contract has been reviewed by George Stamp and found no backdoor code, and the owners privilege is to start the dapp. There is no malicious code that allows the owner (or other) to withdraw all funds from the smart contract.
If the user wishes to unstake their funds prior to ROI then they will pay a penalty fee. George Stamp requires DinoBUSD forks to leave the remaining penalty in the contract instead of sending it to the dev wallet (this contract complies).
This is an evolution of Open Funds V1 with multiple investment plans, no referral reward and each plans are independent: users may unstake or withdraw from each one of them with no interaction between the different plans. Investors can only deposit once in each plan, for a total of 3 deposits.
See the differences here: https://www.diffchecker.com/qSLdwtOi
Chain: BNB Smart Chain.
Token: BUSD (0xe9e7CEA3DedcA5984780Bafc599bD69ADd087D56).
Dapp Type : ROI DAPP.
Daily ROI: 3 different investment plans:
- plan 1: 1.5% daily ROI, one withdraw every 3 days, minimum deposit: 50 BUSD, 3x max profit,
- plan 2: 2% daily ROI, one withdraw every 3 days, minimum deposit: 100 BUSD, 4x max profit,
- plan 3: 3% daily ROI, one withdraw every 3 days, minimum deposit: 300 BUSD, 5x max profit.
Deposit fees takes from investor wallet instead of contract.
Referral Percentage : no referral system.
Reward Accumulation Cut Off : 72 hours (not modifiable by owner).
There are no backdoor methods that withdraw funds to a non investor wallet.
startMarket() - This allows the owner to start the dapp and allows investment
Deposit : 6% (not modifiable by owner).
Withdraw : 3% (not modifiable by owner).
Unstake: 6% (not modifiable by owner) of invested amount, & investor receives 30% of its deposited funds, minus the fee.
The contract is an evolution of OpenFundsV1 that is a fork of Dino BUSD, compliant with the requirement from George Stamp to allocate unstake penalty fee to the contract’s balance instead of developer wallet.
It has a multiple investment plan that allow investors to choose the daily ROI of their choice, and each investment plan works independently from one another, and may only deposit one time in each plan, for a total of 3 deposits.
This contract uses Reentrancy Guard modifiers even though it is not necessary: ERC20 tokens are not vulnerable to reentrancy attacks. Simply following the Pull over Push pattern makes for more readable source code and prevents recursive loop vulnerabilities (reentrancy).
The team has 5 members in their telegram group at the time of the audit and seems to be their first project. They claim to be working for a diginet company, as a first step in decentralized finance.
This is a ROI dapp that relies on new funds being invested, if the contract reaches $0 then investors will not be paid out.
Investors can unstake from an investment plan their deposit and will receive only 30% of their initial investment, minus a fee.