$100K Grant Sparks Effort to Secure Vyper Contracts
The Ethereum Foundation has allocated $100,000 to fund the development of a formally verified compiler for Vyper, a Python-flavored smart contract language used by DeFi protocols like Curve and Yearn. This grant is part of the ETHSecurity Initiatives Round Two, which dedicates $600,000 to improving Vyper's security.
The goal of formal verification is to mathematically prove that the translation process from source code to bytecode preserves the original program's meaning. In other words, it ensures that every input produces exactly the output specified by the source code.
This project aims to create a publicly accessible 'verified compilation' mode within the official Vyper compiler. This would enable developers and auditors to confirm that the bytecode running on-chain accurately represents the source code they reviewed.
The initiative involves collaboration with the Foundation for Verified Software, an organization connected to the Verifereum project. The Vyper development team is also involved to ensure that the verification work stays aligned with the compiler's architecture and evolution.