Time to read: 1 min
Liquidity Provider Server Security Process
We are committed to conduct our security process in a professional and civil manner. Public shaming, under-reporting or misrepresentation of vulnerabilities will not be tolerated.
Responsible Disclosure
For all security related issues, Liquidity Provider Server has two main points of contact. Reach us at security@rootstocklabs.com
or refer to our Bug Bounty Program. Do not open up a GitHub issue if the bug is a security vulnerability
Ensure the bug was not already reported by searching on GitHub under Issues.
Vulnerability Handling
Response Time
RootstockLabs will make a best effort to meet the following response times for reported vulnerabilities:
- Time to first response (from report submit) - 5 business days
- Time to triage (from report submit) - 7 business days
- Time to bounty (from triage) - 15 business days
We'll try to keep you informed about our progress throughout the process.