Skip to content

Commit e90bc59

Browse files
committed
Include Obol SDK and API in the bug bounty program, exclude alpha commands
1 parent 000db7c commit e90bc59

1 file changed

Lines changed: 5 additions & 0 deletions

File tree

docs/adv/security/bug-bounty.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -24,9 +24,14 @@ Eligible submissions must involve software and services developed by Obol, speci
2424

2525
- Charon the DV Middleware Client
2626
- Obol DV Launchpad and Public API
27+
- Obol SDK and APIs
2728
- Obol Splits Contracts
2829
- Obol Labs hosted Public Relay Infrastructure
2930

31+
:::note
32+
Vulnerabilities found in Charon code under the `alpha` subcommand may be down-weighted in severity, as these features are not recommended for production use.
33+
:::
34+
3035
Submissions related to the following are considered out of scope:
3136

3237
- Social engineering

0 commit comments

Comments
 (0)