Project documentation

Security Policy

Deutsche Fassung

Supported Status

The code is at a stage before the first testnet release. There is currently no official mainnet deployment and no external audit.

Reporting a Security Issue

Sensitive vulnerabilities must not be described in public issues. They can be submitted confidentially through the release repository's private GitHub security reporting channel:

Submit a private vulnerability report

Non-sensitive defects, documentation discrepancies, and test improvements can be reported as normal issues.

Response Principles

No Bug-Bounty Promise

There is currently no financial bug-bounty program. Any possible recognition in testnet REIST will be awarded only under rules published in advance and has no assured economic value.