We're a core blockchain infrastructure company. We're creating an open-source creative commons that will enable people to create better institutions through technology.
Target | Type | Severity | Reward |
---|---|---|---|
https://github.com/paritytech/smoldot Copy | Code | Critical | Bounty |
Parity welcomes vulnerability reports that demonstrate security flaws in:
- Any bugs which can be used to bring down or take control of Smoldot light clients without direct access to the machine
Please note that where the scope of this policy includes third-party code this should not be taken as an indication that we are legally or otherwise responsible for that code, its security, quality or your rights in respect of that code.
Most other things are not in scope, though. Specifically:
Responsible investigation and reporting includes, but isn't limited to, the following:
We are happy to thank everyone who submits valid reports which help us improve the security. However, only those that meet the following eligibility requirements may receive a monetary reward: