Skip to content

Latest commit

 

History

History
33 lines (24 loc) · 884 Bytes

File metadata and controls

33 lines (24 loc) · 884 Bytes

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in zkCoins, please report it responsibly:

  1. Do NOT open a public GitHub issue
  2. Email: security@zkcoins.app
  3. Include: description, reproduction steps, impact assessment
  4. We will acknowledge within 48 hours and provide a fix timeline

Scope

Component In Scope
Wallet key derivation Yes
WASM crypto module Yes
Backend API Yes
ZK proof circuit Yes
Bitcoin inscription logic Yes
Documentation site No

Supported Versions

Only the latest version on main is supported with security updates.

Responsible Disclosure

We follow a 90-day disclosure policy. After reporting, we will:

  1. Confirm the vulnerability within 48 hours
  2. Develop and test a fix
  3. Release the fix
  4. Credit the reporter (unless they prefer anonymity)