From 84d4a834a8c8776c8c3ecc4a04a2f319ca4e63d5 Mon Sep 17 00:00:00 2001 From: Jonathan Claudius Date: Tue, 29 Aug 2023 19:56:56 +0000 Subject: [PATCH] security.md: consolidate the ingestion method for the bounty program --- SECURITY.md | 10 +++------- 1 file changed, 3 insertions(+), 7 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index 51ec4f26f2..144817f037 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -51,20 +51,16 @@ As these 3rd party audits are completed and issues are sufficiently addressed, w ## Bug Bounty Program -The Wormhole project operates two bug bounty programs to financially incentivize independent researchers for finding and responsibly disclosing security issues. +The Wormhole project operates a bug bounty program to financially incentivize independent researchers for finding and responsibly disclosing security issues. -- [Self-Hosted Program](https://wormhole.com/bounty/) - - **Scopes**: Guardian and Smart Contracts - - **Rewards**: Up to $2,500,000 USDC - - **KYC**: Required - [Immunefi-Hosted Program](https://immunefi.com/bounty/wormhole/) - **Scopes**: Guardian and Smart Contracts - **Rewards**: Up to $2,500,000 USDC - **KYC**: Required -If you find a security issue in Wormhole, please report the issue immediately using one of the two bug bounty programs above. +If you find a security issue in Wormhole, please report the issue immediately using the bug bounty program above. -If there is a duplicate report, either the same reporter or different reporters, the first of the two by timestamp will be accepted as the official bug report and will be subject to the specific terms of the submitting program. +If there is a duplicate report, either the same reporter or different reporters, the first of the two by timestamp will be accepted as the official bug report and will be subject to the specific terms of the program. ## Trust Assumptions