Skip to main content

Security

Security is our top priority. usmewe implements multiple layers of protection for your assets and data.

Security Status

CategoryStatus
Smart Contract AuditPASS (0 critical, 0 high)
Penetration TestingPASS (69 tests)
Rate LimitingMulti-tier DDoS protection
Secret ManagementInfisical + pre-commit hooks

Security Layers

Smart Contract Security

Audited Solidity contracts with formal verification

API Security

Rate limiting, input validation, CORS protection

Data Protection

Encrypted at rest, TLS in transit, GDPR compliant

Account Security

2FA, session management, suspicious activity alerts

Audit Reports

Our smart contracts have been professionally audited:

Security Audit Report

View full audit findings and remediations

Findings Summary

SeverityFoundFixed
Critical0-
High0-
Medium33
Low55
Informational87

Bug Bounty Program

We offer rewards for responsible disclosure of security vulnerabilities:
SeverityReward
Critical5,0005,000 - 25,000
High2,5002,500 - 5,000
Medium500500 - 2,500
Low100100 - 500

Bug Bounty Details

How to report vulnerabilities and claim rewards

Security Practices

Development

  • All code reviewed by at least 2 developers
  • Automated security scanning in CI/CD
  • Dependency vulnerability monitoring
  • Pre-commit hooks for secrets detection

Operations

  • 24/7 monitoring and alerting
  • Incident response procedures
  • Regular backup and recovery testing
  • Access logging and audit trails

Infrastructure

  • Cloud security best practices
  • Network segmentation
  • Regular penetration testing
  • DDoS protection

Responsible Disclosure

If you discover a security issue:
  1. Do not publicly disclose the vulnerability
  2. Email [email protected] with details
  3. We’ll respond within 24 hours
  4. Work with us on a fix
  5. Receive your bounty reward
Never test vulnerabilities on production systems. Use our testnet or local environment.

Contact

For security concerns: