Websea is a comprehensive digital currency trading platform focused on user-centric services. Supporting a wide range of cryptocurrencies, Websea offers AI-driven investment advice and portfolio optimization. By leveraging knowledge mapping and natural language processing technologies, the platform provides intelligent customer service and efficient issue resolution to enhance the trading experience.
Program Overview The Websea Bug Bounty Program is designed to strengthen the security of its trading infrastructure and Web3 technology stack. By encouraging ethical hackers, developers, and security researchers to identify vulnerabilities, Websea ensures the protection of user funds, data, and platform stability across its decentralized ecosystem.
Reward Structure All valid reports are evaluated using a 4-tier severity model, with rewards determined by the impact and exploitability of the issue and the type of component affected—whether smart contracts, backend systems, or web interfaces. Critical smart contract vulnerabilities are capped at 10% of the economic damage, primarily based on the funds at risk. High-severity vulnerabilities are eligible for rewards up to 100% of the affected value, with final reward amounts determined at the discretion of the Websea security team and based on network conditions at the time of report submission.
Submission Requirements All submissions must include a working proof of concept (PoC) along with detailed reproduction steps. The vulnerability must demonstrate a real and measurable impact on an in-scope asset. Reports without code or with only descriptive analysis will not be considered for rewards.
Payouts All rewards are denominated and paid in USDT, processed by the Websea team following successful validation and completion of KYC.