Security audits for blockchain-based casinos in Singapore/APAC — what do auditors actually focus on (fairness, RNG, bots)?
I’ve been reading more about security audits for blockchain-based casinos, and it feels different from the usual DeFi/protocol audits people discuss.
These systems handle real money, game logic, payouts, randomness, and a lot of the risk seems to sit in assumptions (not just Solidity bugs). I’m based in Singapore, so I’m trying to sanity-check what “good audit coverage” looks like here — especially when teams operate with APAC overlap and a more compliance-sensitive environment.
What I’m trying to understand is what auditors actually focus on when reviewing blockchain casinos: where the highest risk usually hides, how fairness is verified when games involve odds or RNG, and whether audits are more about contract security or game logic + system assumptions. How do auditors think about bots, repeated play, and edge-case exploitation that normal users won’t hit?
Also curious how different this is compared to auditing DeFi protocols or NFT projects, in terms of scope and deliverables. If you’ve audited gaming/casino-style projects (or reviewed audit reports), what are the practical red flags you look for?