Bug Bounty
Please allow reasonable time for remediation before any public disclosure.
Sapience is open source. Nothing stored in the database is considered private — all data is either sourced from or derived from public on-chain state.
To report a vulnerability:
- Open a support ticket in Discord to let us know. If you're unsure whether something qualifies, reach out first.
- Write a failing test that demonstrates the issue.
- Submit a pull request with both the test and your fix so the test passes.
We will review submissions and reward based on severity at our discretion.