Introduction

Credits improves its technology day after day and makes head with a credible faith in decentralized future. The only way to succeed in the modern IT market is to work side-by-side with technology-savvy researchers in order to remedy any weaknesses. It is for that reason Credits team launches the first stage of Bug Bounty Campaign. Credits invites all interested developers and security experts to participate in the program. The first stage is aimed to optimize source code, eliminate vulnerabilities and improve the platform’s security.
The overall prize fund of the first stage is 500 000$. All payments will be made in USD and BTC/ETH/CS coins accounting for developer’s taste.

Steps to participate:

Software Assets in Scope

The following components of Credits Platform are included in 1 Stage of Bug Bounty Campaign:

Investigating and reporting bugs

If you have found a bug, please submit a report through creating a new issue on Credits Github. Note that you are able to submit reports only regarding components of the platform included in “Software in Scope”.

Software to use

The Bug Bounty Campaign is held in the TestNet Release 4.2 network. Participants have two ways to install the necessary software and enter the network:
1) For convenient installation we recommend you to use completed binaries available through the following links:
2) Developers are also able to compile software using source code available on Credits Github. Check the instruction below:

Qualifying Vulnerabilities

For scenarios that do not fall within one of the above categories, Credits team still appreciates reports that help us to make the platform more secure and stable. In general, developers will be rewarded on the basis of table above. Please note these are general guidelines, and that final reward decisions are up to the discretion Credits technical team.

Requirements and Rules:

Follow the campaign conditions and do not perform prohibited actions in order to get a reward.

Legal Information

Any activities conducted in a manner consistent with this policy will be considered authorized conduct and we will not initiate legal action against you.
If legal action is initiated by a third party against you in connection with activities conducted under this policy, we will take steps to make it known that your actions were conducted in compliance with this policy.