Skip to content

Security: aurum-protocoll/aurum

Security

SECURITY.md

Security policy

Supported versions

Version Supported
main branch
Older tags

Reporting a vulnerability

Do not open a public GitHub issue for security vulnerabilities.

Email the maintainer directly at patrickchinwafor@gmail.com with the subject line "SECURITY: [brief description]". You will receive a response within 72 hours.

Please include:

  • A description of the vulnerability and its potential impact
  • Steps to reproduce
  • Any relevant contract IDs or transaction hashes if applicable

Scope

This repository contains a Soroban smart contract deployed on Stellar testnet. The contract has not been professionally audited. See docs/risks.md for the explicit list of known limitations. Do not use this contract on mainnet with real value until an audit has been completed.

Disclosure timeline

We aim to patch confirmed vulnerabilities within 14 days of a report and will credit the reporter in the CHANGELOG unless they request otherwise.

There aren't any published security advisories