Skip to content

Commit

Permalink
Provide a link to bug bounty program in security policy (#5004)
Browse files Browse the repository at this point in the history
Following discussion with folks at the CF.
  • Loading branch information
abailly authored Mar 5, 2025
2 parents 95b1dc7 + 98d5ff5 commit 09e61e1
Showing 1 changed file with 14 additions and 0 deletions.
14 changes: 14 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
Expand Up @@ -26,6 +26,20 @@ Please include as much details as needed to clearly qualify the issue:
* The version of `cardano-wallet` package where the vulnerability exists.
* Any relevant proof-of-concept or exploit code (if applicable).

#### Bug Bounty program

The [Cardano Foundation](https://www.cardanofoundation.org) sponsors a
bug bounty program for cardano-wallet. You can be entitled to a reward
for responsible disclosure of a vulnerability by reporting your
findings on the [program's
page](https://immunefi.com/bug-bounty/cardanofoundation/scope/#top).

Please note the former is only valid for the purpose of participating
in the bug bounty program, and technical details about the
vulnerability shall be analysed using GitHub interface. Make sure you
put a link to the draft security advisory into your bug bounty program
submission.

### Processing Vulnerability

1. **Acknowledgment**: The team acknowledges the receipt of your
Expand Down

0 comments on commit 09e61e1

Please sign in to comment.