AirSwap Bug Bounty

AirSwap Team
Dec 3, 2019 · 2 min read

With latest contracts on mainnet, we’re running a bug bounty indefinitely to reward bug discovery and reporting on specific Solidity smart contracts, with rewards up to 20,000 DAI depending on risk severity.

Image for post
Image for post

The scope of the bug bounty is limited to contracts located within the AirSwap Protocols repository that have been deployed onto mainnet. Latest mainnet deploys for the following are at this commit hash.

Swap: Atomic Swap Between Tokens
Indexer: Counterparty Discovery with Staking
Index: Ordered List of Locators
DelegateFactory: Deploys New Delegates
Delegate: Onchain Trading Delegate
Types: Types and Hashes
Wrapper: Use ether for WETH trades

Added Feb 1, 2021:
Light: Efficient Atomic Swaps
Locker: Locked Token Balances for Staking
Pool: Tokens Pooled for Claiming

The value of rewards will vary depending on severity as judged by the AirSwap team. Severity is determined according to the OWASP risk rating model based on Impact and Likelihood, as employed in the Ethereum bug bounty campaign.

Image for post
Image for post

Bounty payouts

  • Medium: Up to 500 DAI
  • High: Up to 2,000 DAI
  • Critical: Up to 20,000 DAI

A few friendly rules

  1. Don’t steal or attempt to steal others funds.
  2. Don’t publicly disclose a bug before it has been fixed.
  3. Paid auditors of this code are not eligible for rewards.
  4. Issues that are mentioned in the security audits are not eligible. See the most recent security audit on GitHub.
  5. Issues that are mentioned in individual security reports (for example Swap) are not eligible.
  6. Non-security critical issues (e.g. style or gas optimizations) are ineligible.
  7. Determinations of eligibility, score and all terms related to an award are at the sole and final discretion of the AirSwap team.

Submitting a bug report

About AirSwap

Blog | Twitter | Discord | Developers | Makers | Reddit | Facebook | Linkedin | Subscribe | Support | Request a Feature | FAQ | Trade Now

Fluidity

Rebuilding Finance for a Frictionless World

AirSwap Team

Written by

AirSwap is a peer-to-peer trading network built on Ethereum. Our mission is to empower people through global, frictionless trade.

Fluidity

Fluidity

Rebuilding Finance for a Frictionless World

AirSwap Team

Written by

AirSwap is a peer-to-peer trading network built on Ethereum. Our mission is to empower people through global, frictionless trade.

Fluidity

Fluidity

Rebuilding Finance for a Frictionless World

Medium is an open platform where 170 million readers come to find insightful and dynamic thinking. Here, expert and undiscovered voices alike dive into the heart of any topic and bring new ideas to the surface. Learn more

Follow the writers, publications, and topics that matter to you, and you’ll see them on your homepage and in your inbox. Explore

If you have a story to tell, knowledge to share, or a perspective to offer — welcome home. It’s easy and free to post your thinking on any topic. Write on Medium

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store