Skip to main content
logo

bug-bounty-program

Mars Protocol is committed to building a secure and robust DeFi ecosystem. We value your expertise in helping us identify and address vulnerabilities in our protocol. This bug bounty program rewards security researchers who discover and responsibly report vulnerabilities in our smart contracts and blockchain applications.

Program Overview

Mars Protocol majorly consists of key components:

  • Red Bank: A money market protocol for lending and borrowing.
  • Credit Accounts: A generalized credit primitive for Mars outposts.

Maximum Bounty: $100,000

We offer competitive rewards for identified vulnerabilities. The severity of the vulnerability determines the reward amount.

Rewards by Threat Level

Reward Determination

  • Rewards are based on the severity of the vulnerability using the Immunefi Vulnerability Severity Classification System V2.2.
  • All reports must include a Proof of Concept (PoC) demonstrating the vulnerability and its impact on in-scope assets. Code is required, not just explanations.
  • Rewards for critical vulnerabilities are capped at 10% of the potential economic damage on mainnet, with a minimum of $20,000 and a maximum of $100,000.

For a detailed explanation, you can check out immunefi bug bounty page