Bug Bounty¶
Welcome to the CubeDAO Bug Bounty Program! This program rewards players and community members who report significant bugs or security vulnerabilities that could impact the integrity, security, or functionality of CubeDAO's ecosystem. Your efforts help us create a safer, more stable platform for all users.
What Types of Bugs Are Included in This Program?¶
Our Bug Bounty Program focuses on two main categories of bugs: Enterprise Bugs and Game Breaking Bugs.
Enterprise Bugs¶
These bugs represent serious security risks that could compromise CubeDAO’s infrastructure or user data: - Unauthorized access to critical infrastructure - Exposure of Personally Identifiable Information (PII) - Circumventing security protocols
Game Breaking Bugs¶
These are bugs that disrupt gameplay or affect the economy and user experience: - Currency or item duplication - Methods that crash or overload the server - Exploits that give players unintended advantages
Warning: Do not attempt unauthorized access to our systems under any circumstances. Unauthorized testing can result in disqualification from the Bug Bounty Program.
What Are the Rewards for These Bugs?¶
Our rewards are designed to recognize the severity and potential impact of each bug. Bounties are paid in $CBIT tokens on the Polygon blockchain.
Enterprise Bug Bounties¶
- Critical Security Bugs: Up to 250,000 $CBIT
- Sensitive Information Exposure: Up to 125,000 $CBIT
Game Breaking Bug Bounties¶
- HIGH Severity: 125,000 $CBIT
- MID Severity: 75,000 $CBIT
- LOW Severity: 25,000 $CBIT
- ALL SEVERITIES: Exclusive "[Bugging Out]" Overhead Tag in-game to recognize your contribution!
Severity Levels for Game Breaking Bugs¶
Each Game Breaking Bug is categorized based on its impact on gameplay and the CubeDAO ecosystem.
High Severity¶
- Examples:
- Duplication of any item that significantly impacts the game economy
- Server exploits that compromise the gameplay experience for large numbers of players
Mid Severity¶
- Examples:
- Duplication of high-value items or rare currencies
- Exploits that create major imbalances in player progression or economy
Low Severity¶
- Examples:
- Duplication of low-value items with limited game impact
- Server crash bugs with limited recurrence or easy workaround solutions
How to Report a Bug¶
If you find a bug, please report it promptly and accurately. Follow these steps to report:
- Prepare a Description: Include clear details of the bug and how to reproduce it. Attach screenshots or video evidence if possible.
- Contact Us: Send an email with your report to [email protected]. Use “Bug Report” as the subject line.
- Await Confirmation: Our team will review your submission and may reach out for additional details.
Note: To qualify for a reward, please refrain from sharing or discussing the bug publicly until our team has addressed it.
Thank you for helping us maintain the quality and security of the CubeDAO platform. Your contributions make CubeDAO a stronger, more resilient community!