Skip to content

Security: imtheroute/X1-XON

SECURITY.md

Security Policy

Supported Versions

The X1 XON smart contract is immutable after deployment.
Only the latest deployed mainnet version is supported.

Version Supported
Mainnet (current)
Testnet versions
Old or forked versions

Reporting a Vulnerability

If you discover a security vulnerability, please report it responsibly.

Contact


Reporting Guidelines

When reporting a vulnerability, please include:

  • A clear description of the issue
  • Steps to reproduce the problem
  • Expected vs actual behavior
  • Transaction IDs, logs, or screenshots (if applicable)

Please do not disclose the issue publicly until it has been reviewed.


Response Timeline

  • Initial response: within 48–72 hours
  • Status update: within 7 days
  • Resolution time: depends on severity and impact

Rewards / Acknowledgment

At this time, there is no formal bug bounty program.

However, valid security reports may receive:

  • Public acknowledgment
  • Future rewards at the project’s discretion

Scope

This policy applies to:


Out of Scope

The following are not considered security vulnerabilities:

  • Loss of private keys or seed phrases
  • User errors or incorrect transactions
  • Issues in third-party wallets, exchanges, or dApps
  • Social engineering or phishing attacks
  • Bugs in unofficial forks or copies of the project

There aren’t any published security advisories