generated: '2026-07-17' method: searched source: https://docs.opengdp.network/get-started/security/bug-bounty.md probe: false program: OpenGDP Bug Bounty scope: Vulnerabilities and bugs in any deployed OpenGDP smart contract and deployed systems. platform: direct policy: - https://docs.opengdp.network/get-started/security/bug-bounty.md contact: - security@andalusia-labs.com rewards: Discretionary; allocated based on severity of the bug disclosed and assets at risk. severity_levels: - level: Critical definition: Contract locks or fund theft affecting multiple users. - level: High definition: Individual user impact with reputational or moderate financial risk. - level: Medium definition: Relatively small risk without threat to user funds. - level: Low/Informational definition: Best-practice issues with no immediate risk. requirements: - Report within 24 hours of discovery. - No prior public disclosure. - Proof of concept and reproduction steps required. - Reporters must not exploit vulnerabilities. - Acknowledgment guaranteed within 3 business days. evidence: - source: https://docs.opengdp.network/get-started/security/bug-bounty.md kind: bug-bounty-page