Files
web/apps/base-docs/docs/security.md
taycaldwell 0650a43c93 Add description and keyword metadata for SEO (#148)
* Add description and keyword metadata for SEO

* Update deploy-smart-contracts.mdx

* Update metadata

* Update connecting-to-the-blockchain.md

* Attempt #123 to wakeup Heimdall

* Fix formatting

* Remove file
2023-11-22 15:57:03 -05:00

46 lines
1.8 KiB
Markdown

---
title: Security
slug: /security
description: The Base bug bounty program and procedures for reporting vulnerabilities.
keywords:
[
Base,
Coinbase,
bug bounty program,
report vulnerability,
bug report,
cybersecurity,
HackerOne,
Base network,
Bedrock,
Optimism,
vulnerability reporting,
crypto security,
open source,
]
---
# Security
---
## Bug bounty program
In line with our strategy of being the safest way for users to access crypto:
- Coinbase will be extending our [best-in-industry](https://www.coinbase.com/blog/celebrating-10-years-of-our-bug-bounty-program) million-dollar [HackerOne bug bounty program](https://hackerone.com/coinbase?type=team) to cover the Base network, the Base bridge contracts, and Base infrastructure.
- Coinbase will be working in tandem with OP Labs to harden the security guarantees of Bedrock and accelerate the timeline for decentralized fault-proofs on the [OP Stack](https://stack.optimism.io/).
- Coinbase's bug bounty program will run alongside Optimism's existing [Immunefi Bedrock bounty program](https://immunefi.com/bounty/optimism/) to support the open source [Bedrock](https://stack.optimism.io/docs/releases/bedrock/) OP Stack framework.
---
## Reporting vulnerabilities
All potential vulnerability reports can be submitted via the [HackerOne](https://hackerone.com/coinbase) platform.
The HackerOne platform allows us to have a centralized and single reporting source for us to deliver optimized SLA's and results. All reports submitted to the platform are triaged around the clock by our team of Coinbase engineers with domain knowledge, assuring the best quality of review.
For more information on reporting vulnerabilities and our HackerOne bug bounty program, view our [security program policies](https://hackerone.com/coinbase?view_policy=true).
---