Sky protocol expanded its bug bounty program scope to include 30 additional assets on Immunefi.
Tech & Launches ·
Sky has expanded the scope of its bug bounty program on Immunefi, bringing 30 additional assets into the eligible range for vulnerability disclosures. The expansion widens the surface area of the protocol's security coverage and allows researchers to report bugs affecting a larger set of deployed contracts and assets.
The program operates under a tiered reward structure, with critical smart contract vulnerabilities eligible for up to 10% of directly affected funds, capped at $10 million, and a minimum payout of $150,000 to incentivize timely reporting. Rewards scale based on threat level and the nature of the impact, with specific provisions for repeatable attacks and temporary fund freezes. Critical website and application bugs carry fixed rewards of $100,000 or $50,000 depending on whether funds are directly lost without user action required.
The exact composition of the 30 newly added assets and any changes to reward parameters or threat classifications remain unspecified in available materials. The timing and rollout schedule for full integration of these assets into the active bounty framework have not been detailed.