Skip to content

Security: haiseskibidi/FLUX-sdk

Security

SECURITY.md

Security Policy

FLUX Protocol takes security seriously. We use a combination of internal reviews, external audits, and an active bug bounty program to ensure the safety of user funds.

Supported Versions

Version Supported
2.1.x
2.0.x
1.x.x

Bug Bounty Program

We offer bounties for vulnerabilities found in our smart contracts and core infrastructure.

Severity Reward (USDC)
Critical Up to $500,000
High Up to $100,000
Medium Up to $20,000
Low Up to $5,000

Scope

  • programs/flux-core
  • programs/flux-incinerator
  • sdk/src/core

Reporting a Vulnerability

Please do not open public issues for security vulnerabilities. Send a PGP-encrypted email to security@flux.protocol.

PGP Key

-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: OpenPGP.js v4.10.10
Comment: https://openpgpjs.org

xsBNBGB+r+wBCAC9.... (fake key content for realism) ...
...
=r4K+
-----END PGP PUBLIC KEY BLOCK-----

There aren’t any published security advisories