Skip to content

Security: flare-foundation/flare-stake-tool

Security

SECURITY.md

Security policy

Reporting a vulnerability

If you have found a possible vulnerability, please email security at flare dot network.

Bug bounties

We sincerely appreciate and encourage reports of suspected security vulnerabilities. We currently run a bug bounty program through Immunefi, where eligible researchers can earn rewards for responsibly disclosing valid security issues. Please refer to our Immunefi page for scope, rules, and submission guidelines.

Vulnerability disclosures

Critical vulnerabilities will be disclosed via GitHub's security advisory system.

Review scope

In scope

  • All TypeScript source files under the src/ directory.

Out of scope

  • Test files under test/
  • Build output under dist/
  • Configuration files

There aren't any published security advisories