Skip to content

Security: beh-land/Behland-Documents

Security

SECURITY.md

πŸ” Security Policy

BehLand is committed to maintaining a secure, transparent, and trustworthy ecosystem. We welcome responsible security research and encourage the community to report potential vulnerabilities in a responsible manner.


πŸ“Œ Scope

This security policy applies to:

  • Smart contract implementations
  • Token-related infrastructure
  • Documentation repositories
  • Public-facing services operated by BehLand

Issues related to user behavior, social engineering, or third-party platforms are outside the scope of this policy.


🐞 Reporting a Vulnerability

If you believe you have found a security vulnerability, please report it responsibly using one of the official channels below.

Preferred Contact Channels

Please do not disclose vulnerabilities publicly before they have been reviewed by the BehLand team.


πŸ•’ Response Process

  • Initial acknowledgment within 72 hours
  • Preliminary assessment and severity classification
  • Internal review and mitigation planning
  • Public disclosure (if applicable) after resolution

BehLand reserves the right to determine disclosure timelines to ensure user safety.


🀝 Responsible Disclosure

We strongly encourage responsible disclosure. Researchers who report valid issues in good faith will be acknowledged where appropriate.

BehLand does not offer a formal bug bounty program at this stage, but all reports are taken seriously.


🚫 Out of Scope

  • Denial of Service (DoS) attacks
  • Social engineering or phishing attempts
  • Issues caused by third-party services or user wallets
  • Previously disclosed or known issues

πŸ“„ Policy Updates

This security policy may be updated as the project evolves. The latest version will always be available in this repository.

There aren’t any published security advisories