
IceCreamSwap is a multi-chain DeFi ecosystem offering a suite of tools including a DEX, DEX-aggregator, cross-chain bridge, launchpad, KYC system, and staking pools. Designed to guarantee users the best trading prices, IceCreamSwap supports a wide range of networks such as Binance Smart Chain (BSC), CORE DAO, XDC, Telos, Bitgert, and more—making it a one-stop platform for seamless DeFi access across chains.
Program Overview The IceCreamSwap Bug Bounty Program invites security researchers and ethical hackers to identify and report vulnerabilities within the IceCreamSwap ecosystem. This initiative strengthens the platform’s reliability, protects user funds, and ensures the secure operation of its smart contract infrastructure.
Reward Structure All valid reports are evaluated using a 4-level severity model, with payouts based on the severity and scope of the issue. For critical smart contract vulnerabilities, rewards are capped at 10% of the economic damage, factoring in the amount of funds at risk as well as potential PR and brand implications, as determined by the IceCreamSwap team. High-severity vulnerabilities are eligible for rewards up to 25% of the funds affected, calculated at the time the report is submitted.
Submission Requirements Submissions must include a working proof of concept (PoC) and detailed reproduction steps. Reports that do not contain code or fail to demonstrate a tangible impact on an in-scope asset will be disqualified.
Payouts All rewards are denominated and paid in ICE, and are distributed directly by the IceCreamSwap team following successful validation and completion of KYC.