Allowed research
Good-faith review of public pages, headers, route behavior, wallet prompts, and published contracts.
Vulnerability disclosure
This page sets the public reporting rules for the current beta. Formal bounty scope is still pending, but a monitored reporting contact is now published.
Safe harbor intent
Good-faith review of public pages, headers, route behavior, wallet prompts, and published contracts.
No denial of service, social engineering, phishing, data exfiltration, fund movement, or destructive testing.
Reports should include the route, reproducible steps, impact, and screenshots or logs where safe.
Current status
ops@atomic-a-i.cloud (monitored for security reports)