EarnProof contracts affect public proof status and issuer trust state. Please report vulnerabilities privately before opening a public issue.
Email the maintainers at security@veridatum.dev with:
- affected contract and commit;
- vulnerability description;
- reproduction steps;
- expected impact;
- suggested remediation, if known.
Do not include private keys, seed phrases, or real payment records in reports.
The current project targets Stellar testnet only. Mainnet deployment and production security claims are out of scope until explicitly documented and reviewed.