Files
dodo-contractV2/README.md

35 lines
1.8 KiB
Markdown
Raw Normal View History

2021-01-23 18:34:22 +08:00
# DODO V2: Help 1 Trillion People Issue Token
2020-06-26 00:31:25 +08:00
2021-01-23 18:39:36 +08:00
## Audit Report
[Audited by Peckshield](https://github.com/DODOEX/contractV2/blob/main/audit/PeckShield-Audit-DODOV2-v1.0.pdf)
2021-01-23 18:34:22 +08:00
## Bug Bounty 💰
2020-07-13 13:35:35 +08:00
2021-01-23 18:34:22 +08:00
### Rewards
2020-06-26 00:31:25 +08:00
2021-01-23 18:34:22 +08:00
Severity of bugs will be assessed under the [CVSS Risk Rating](https://www.first.org/cvss/calculator/3.0) scale, as follows:
2020-07-13 13:35:35 +08:00
2021-01-23 18:34:22 +08:00
- Critical (9.0-10.0): Up to $100,000
- High (7.0-8.9): Up to $10,000
- Medium (4.0-6.9): Up to $5,000
- Low (0.1-3.9): Up to $1,000
2020-07-13 13:35:35 +08:00
2021-01-23 18:34:22 +08:00
In addition to assessing severity, rewards will be considered based on the impact of the discovered vulnerability as well as the level of difficulty in discovering such vulnerability.
2020-07-13 13:35:35 +08:00
2021-01-23 18:34:22 +08:00
### Disclosure
2020-07-13 13:35:35 +08:00
2021-01-23 18:34:22 +08:00
Any vulnerability or bug discovered must be reported only to the following email: contact@dodoex.io; must not be disclosed publicly; must not be disclosed to any other person, entity or email address prior to disclosure to the contact@dodoex.io email; and must not be disclosed in any way other than to the contact@dodoex.io email. In addition, disclosure to contact@dodoex.io must be made promptly following discovery of the vulnerability. Please include as much information about the vulnerability as possible, including:
2020-07-13 13:35:35 +08:00
2021-01-23 18:34:22 +08:00
- The conditions on which reproducing the bug is contingent.
- The steps needed to reproduce the bug or, preferably, a proof of concept.
- The potential implications of the vulnerability being abused.
A detailed report of a vulnerability increases the likelihood of a reward and may increase the reward amount.
2020-12-06 11:25:03 +08:00
2021-01-23 18:34:22 +08:00
Anyone who reports a unique, previously-unreported vulnerability that results in a change to the code or a configuration change and who keeps such vulnerability confidential until it has been resolved by our engineers will be recognized publicly for their contribution, if agreed.
2020-12-06 11:25:03 +08:00
2021-01-23 18:34:22 +08:00
## Contact Us
2021-01-23 18:35:45 +08:00
Send E-mail to contact@dodoex.io