What is a Bounty Program
Ton Whales offers monetary rewards to security researchers who find and report issues in our smart contracts or staking system. To receive a reward, send a detailed report about the discovered vulnerability to anton.bruilo@whalescorp.com. In the report, describe the essence of the problem, methods of exploitation, and the steps that led to its discovery.Public disclosure of vulnerability information disqualifies you from receiving a reward.
Vulnerability Categories
Critical Vulnerability
Reward: 15,000 TONDescription: A vulnerability that could lead to substantial loss of funds by users or pool owners. Such vulnerabilities include: the possibility of unauthorized withdrawal of funds from smart contracts, bypassing staking security mechanisms, manipulation of user balances, critical errors in reward distribution logic, as well as any defects that allow attackers to gain control over other system participants’ funds.
Minor Vulnerability
Reward: 500 TONDescription: A vulnerability that will not lead to substantial loss of funds but may negatively affect system functionality. This includes: errors in data display, non-critical user interface failures, smart contract performance issues, minor violations in system logic that do not affect fund security, as well as vulnerabilities that may cause temporary inconvenience to users without financial consequences.