Waku is the communication layer for Web3. Decentralized communication that scales. Private, secure, and it runs anywhere. This program covers the Javascript & Go implementations.
Target | Type | Severity | Reward |
---|---|---|---|
https://github.com/waku-org/js-waku Copy Copied A JavaScript implementation of the Waku v2 protocol (https://rfc.vac.dev/spec/10/). | Code | Medium | Bounty |
https://github.com/waku-org/js-waku-examples Copy Copied We are interested in finding vulnerabilities in the examples but will consider the severity lower | Code | Low | Bounty |
https://github.com/status-im/go-waku Copy Copied | Code | Medium | Bounty |
https://github.com/status-im/go-waku/tree/master/examples Copy Copied We are interested in finding vulnerabilities in the examples but will consider the severity lower | Code | Low | Bounty |
A JavaScript implementation of the Waku v2 protocol (https://rfc.vac.dev/spec/10/).
We are interested in finding vulnerabilities in the examples but will consider the severity lower
We are interested in finding vulnerabilities in the examples but will consider the severity lower
Target | Type | Severity | Reward |
---|---|---|---|
https://github.com/status-im/go-waku/tree/master/waku/v2/protocol/rln Copy Copied | Code | None | Bounty |
No specific focus area has been defined so far.
But a very valuable type of report would reveal a vulnerability in the implementations (js-waku
or go-waku
) which would trigger an update of the specification of the Waku v2 protocol (https://rfc.vac.dev/spec/10/).
Those type of reports would be marked as High
or Critical
.
The following issues are considered out of scope: