Cregis is an enterprise-grade clearing and settlement infrastructure for Web3, designed to support secure and efficient asset management for individuals and teams. As the upgraded brand of UDun, Cregis provides advanced MPC (Multi-Party Computation) and Account Abstraction (AA) wallet solutions, alongside financial collaboration tools tailored for decentralized operations. It enables seamless, secure financial coordination across the Web3 ecosystem.
Program Overview The CREGIS Bug Bounty Program is established to ensure the ongoing security and reliability of the CREGIS ecosystem. By inviting developers and ethical hackers to responsibly disclose vulnerabilities, CREGIS aims to proactively identify risks and uphold the integrity of its smart contracts and infrastructure.
Reward Structure All submissions are evaluated under a standardized 4-tier severity model, with rewards determined based on the criticality, impact, and target type. For critical smart contract vulnerabilities, rewards are capped at 10% of the economic damage, with the funds at risk and potential reputational implications factored into the decision. High-severity vulnerabilities may receive rewards of up to 100% of the affected funds, calculated at the time of submission.
Submission Requirements Bug reports must include a working proof of concept (PoC) and detailed steps to reproduce the issue. Submissions without code or lacking evidence of an end-effect on an in-scope asset will not be accepted for rewards.
Payouts All rewards are denominated and paid in USDT, processed by the CREGIS team after successful report validation.