Quantum Audit Logo

Is c8ntinuum Safe?

On-chain security analysis — is it a scam or legit?

Is this your token? Publish your own audit on this page →

c8ntinuum CTM
0xc8fb…8888
BNB Chain
Not verifiedThis record has not gone through deep verification and is not being monitored. The score is a dated snapshot — the token’s risk can change at any time.Own this token? Put it under verification →
Last checked today 1 audit on record
How is this score calculated? → Medium Risk
Executive SummaryAI Copilot

The CTM token contract is an ERC-20 compliant token with access control features. The primary finding is the presence of a minting capability, allowing a privileged role to increase the token supply. This introduces a potential for token dilution if not managed carefully.

3 Medium3 Informational
Volume 24h
$39.1K
Liquidity
$8.9K
Price
$0.2301
Token Age
3mo
Top 10 Holders
17.6%

Security Findings

Medium

Privileged Address Can Mint New Tokens

CP-01A specific role, designated as the 'MINTER_ROLE', has the ability to create new CTM tokens using the `mint(address account, uint256 value)` function. This means that an address holding this role can increase the total supply of CTM tokens, which could dilute the value of tokens held by existing holders.
IssueA specific role, designated as the 'MINTER_ROLE', has the ability to create new CTM tokens using the `mint(address account, uint256 value)` function. This means that an address holding this role can increase the total supply of CTM tokens, which could dilute the value of tokens held by existing holders.
FixToken holders should understand that the total supply of CTM tokens can be increased by the address holding the 'MINTER_ROLE'. It is recommended to verify who holds this role and what policies or governance procedures are in place to control its use. If minting is not a desired long-term feature, consider removing the 'MINTER_ROLE' or transferring it to a burn address.
StatusUnresolved
Medium

Liquidity not locked

QA-LIQUIDITY0.0% of the pool's LP is burned or time-locked. 100.0% is held, unlocked, by 2 address(es) other than the owner/deployer. One of them — a wallet, 0xd5fa…25d9 — holds 65.5% and can remove that share at once; who controls it is not visible on-chain, so it is not treated as an independent provider. Some pools are concentrated-liquidity (V3/V4) positions; shares above are by position as GoPlus reports them.
Issue0.0% of the pool's LP is burned or time-locked. 100.0% is held, unlocked, by 2 address(es) other than the owner/deployer. One of them — a wallet, 0xd5fa…25d9 — holds 65.5% and can remove that share at once; who controls it is not visible on-chain, so it is not treated as an independent provider. Some pools are concentrated-liquidity (V3/V4) positions; shares above are by position as GoPlus reports them.
FixCheck the lock's end date and beneficiary on the locker's own page before relying on it.
StatusAcknowledged
Medium

The market for this token

QA-MARKETLiquidity $9K (DexScreener, all pools). 24h trading volume $5.0M (CoinGecko, all markets, daily snapshot). 24h trading volume $39K (DexScreener, all pools).
IssueLiquidity $9K (DexScreener, all pools). 24h trading volume $5.0M (CoinGecko, all markets, daily snapshot). 24h trading volume $39K (DexScreener, all pools).
FixSize any position to the liquidity and daily volume shown — they set how much you can sell and at what price.
StatusAcknowledged
Info

Who holds the supply

QA-HOLDERSThe ten largest holders own 17.6% of supply. What remains: 14.4% in wallets, 3.3% in other contracts. The deployer/owner wallet itself holds 6.9%. 11,826 holders in total.
IssueThe ten largest holders own 17.6% of supply. What remains: 14.4% in wallets, 3.3% in other contracts. The deployer/owner wallet itself holds 6.9%. 11,826 holders in total.
FixWatch the largest wallets that are not exchanges, pools or locks — those are the ones that can move the price.
StatusAcknowledged
Info

Listed, but not independently verified

QA-IDENTITYListed on CoinGecko as c8ntinuum (CTM). 11,826 holders.
IssueListed on CoinGecko as c8ntinuum (CTM). 11,826 holders.
FixMatch the contract address against the project's official channels before trading.
StatusAcknowledged
Info

Asset class: Project token

QA-PROFILEA token issued by a project for use, governance or fundraising. Scored on its contract and market facts. The class itself adds no points; the contract and market facts decide the score. Basis: no class-specific evidence. Tokenomics — Supply: mintable with no on-chain cap found. Control: an owner key. Code: not upgradeable (no proxy). Fees: no buy or sell tax. Market: $9K of DEX liquidity across 1 pools. Launch: 111 days of market history.
IssueA token issued by a project for use, governance or fundraising. Scored on its contract and market facts. The class itself adds no points; the contract and market facts decide the score. Basis: no class-specific evidence. Tokenomics — Supply: mintable with no on-chain cap found. Control: an owner key. Code: not upgradeable (no proxy). Fees: no buy or sell tax. Market: $9K of DEX liquidity across 1 pools. Launch: 111 days of market history.
FixCheck the project's own documentation for what the token is used for; this report covers what the contract allows.
StatusAcknowledged

Category Ratings

TechnicalLow8/10

The contract implements standard ERC-20 token functionalities, including `transfer`, `balanceOf`, and `approve`. It utilizes OpenZeppelin's `AccessControl` for managing permissions, ensuring that sensitive operations are restricted to authorized roles (7.3 Access Control). A key technical finding is the `mint` function, which allows a specific role to create new tokens, directly impacting the total supply (7.2 Code Security). The architecture is straightforward for an ERC-20 token (7.1 Architecture).

GovernanceHigh1/10

The economic model of the CTM token allows for supply inflation through the `mint` function, which is controlled by an address holding the `MINTER_ROLE`. This capability introduces a risk of token dilution for existing holders if new tokens are minted without clear economic justification or community consensus (7.4 Economic). While `AccessControl` provides a mechanism for managing this role, the governance around who holds the `MINTER_ROLE` and under what conditions minting occurs is critical (7.5 Governance).

UpgradesHigh3/10

The CTM contract is not designed as an upgradeable proxy, meaning its logic is immutable once deployed. This eliminates potential risks associated with upgrade mechanisms, such as proxy initialization errors or storage collisions (7.7 Upgrades). However, it also implies that any future bug fixes or feature enhancements would necessitate a new contract deployment and migration process.

Security Checklist

Contract VerifiedPass
Ownership RenouncedFail
No Mint FunctionFail
Liquidity LockedFail
Not a ProxyPass
HoneypotNoneBuy Tax0.0%Sell Tax0.0%

Holder Composition

14.4% in wallets3.3% in contracts
Effective Concentration15.7%

Share held by contracts — treasury, vesting, bridge or staking — is discounted against share held by wallets when the score is computed: a contract cannot decide to sell the way an anonymous holder can, though it can still be drained or voted to sell. Effective concentration is the figure the risk score is actually calculated from.

Liquidity Depth

The risk score reads depth across every pair. The volume figure and the volume-to-liquidity ratio elsewhere on this page describe only the pair this audit analysed, so the two are not directly comparable.

LP Distribution

Top-1 Unlocked Holder65.5%
Top-3 Unlocked100.0%

Key Addresses

Deployer
0xbb84…8a70
Unlocked LP Held By
0xd5fa…25d90x9e20…348a0x1a07…8687

No privileged address appears among these holders: the unlocked liquidity sits with independent providers, not with the deployer.

What Raised This Score

  • Mintable supply — no cap found, dilution unbounded
  • Liquidity NOT locked (100% of the pool) — held by independent providers — market-depth risk
  • Liquidity < $10k ($8,885 across 1 pairs — easily drained)

Each factor is an on-chain fact recorded at the time of this analysis. The score is computed from them by a deterministic function, so the same contract returns the same score for anyone who runs the audit. How scores are computed

Related Audits

BTCB Token (BTCB)Medium Risk孙小圣Medium RiskSlap Cat (SLAP)Medium RiskUnitas (UP)Medium RiskniulaiMedium RiskBNB Attestation (BAS)Medium Risk

Would You Like a More Detailed Audit of c8ntinuum?

Our AI-powered scanner gives you a deeper, real-time smart contract analysis — free, with every scoring factor shown.

Get Detailed Audit