Services Case Studies Stack Explorer Products FAQ About Book a call

Practical answers before we scope.

Fixed scope, USDC accepted, honest audit boundaries, and no mainnet-safety theater.

What do you actually do?

Composition mapping & architecture review, Vyper 0.4 migration sprints, invariant-first security reviews, DeFi protocol architecture, and deploy-gate/watchtower setup for protocol teams.

Are your systems audited?

No external audit is claimed. My stack is self-reviewed, stateful-fuzzed, fork-tested where practical, and internally composition-reviewed. That helps prepare for an independent audit — it does not replace one.

Do you work with mainnet deployments?

Yes, with explicit scope, key custody, deployment, and verification procedures. The KhomDev public stack shown here is Sepolia/testnet scale with no mainnet TVL.

How much does it cost?

Typical ranges: composition mapping $2k–$5k, Vyper migration from $9k, invariant-first review from $3k, protocol architecture from $12k, deploy gate/watchtower $4k setup or $500–$1.5k/month. Fractional retainer from $6k/month.

How do payments and escrow work?

Fixed scope, fixed price, settled in USDC (Request Finance or Coinbase Commerce). 50% to start, 50% on delivery. Engagements over $5k can run through a Safe multisig with a neutral signer or Kleros escrow.

Why Vyper?

Vyper's smaller surface area and explicitness remove whole classes of bugs, and it's the native language of the Curve ecosystem. Few engineers specialize in it — that scarcity is why teams bring me in.

What's your turnaround?

Reviews in days, integrations in 1–2 weeks, full builds in weeks. Every engagement is scoped to a fixed timeline before work starts. 24h reply on inquiries.

What's the difference between products and services?

Products are self-serve Vyper blueprint packages — educational/reference, self-reviewed, not audited. Services are custom work on your codebase, architecture, deployment, or review process.

Do your agents control funds?

No. The security agents are deterministic and read-only unless specifically documented otherwise. They verify, diff, monitor, simulate, and report. They do not execute transactions or hold keys.

Do you deploy solo?

Yes — you work directly with the engineer who writes the code. Escrow and milestone delivery keep larger engagements low-risk.

How an engagement runs

01

Scoping call

Within 24h you get a 1-page Statement of Work — scope, deliverables, fixed price, timeline.

02

Fixed scope, fixed price

Sign the SOW, 50% to start in USDC. Escrow optional on engagements over $5k.

03

Milestone build

Daily progress over Telegram or email. Invariants and tests go green as we go.

04

Delivery + support

Code, tests, and report shipped. Final 50% on acceptance. 7 days post-delivery support included.

Book a call See services

24h reply · fixed scope · honest risk boundaries