pStake on Cosmos-logo

pStake on Cosmos

pSTAKE is a liquid staking protocol that unlocks liquidity for your staked assets. With pSTAKE, users can securely stake their Proof-of-Stake (PoS) assets, participate in protocol improvements and security to earn staking rewards, and receive staked underlying representative tokens (stkASSETs) which can be used to explore additional yield opportunities across DeFi.

BSC
Blockchain
Defi
L1
Liquid Restaking
Liquid Staking
Staking
Go
NextJS
Maximum Bounty
$100,000
Live Since
18 April 2023
Last Updated
24 July 2024
  • PoC required

Resources & Documentation

Impacts only apply to assets in active use by the project like contracts on mainnet or web/app assets used in production. Any impact that applies to assets not in active use, like test or mock files, are out-of-scope of the bug bounty program unless explicitly mentioned as in-scope.

Blockchain/DLT

Smart Contracts/pSTAKE Module

  • Smart Contracts/pSTAKE module - PoC, Smart Contract/pSTAKE module bug reports are to include a runnable Proof of Concept (PoC) in order to prove impact.
  • For more information on PoCs please visit: Proof of Concept (PoC) Guidelines and Rules

Web/App

  • Web/App - Bug reports are required to include a runnable Proof of Concept (PoC) in order to prove impact.
  • All web/app bug reports must come with a PoC with an end-effect impacting an asset-in-scope in order to be considered for a reward. All PoC content must adhere to the PoC guidelines and rules of Immunefi. In the event that a PoC requires an attack on a web/app asset provided, they must still adhere to the rules provided, otherwise eligibility for a reward may be revoked.
  • For more information on PoCs please visit: Proof of Concept (PoC) Guidelines and Rules

Whitehats we highly encourage you to review any potential subdomains and what specific port(s) are in scope. Even though the domain may be the same, different ports may point to different assets.

Impacts to other assets

Hackers are encouraged to submit issues outside of the outlined Impacts and Assets in Scope.

If whitehats can demonstrate a critical impact on code in production for an asset not in scope, pSTAKE on Cosmos encourages you to submit your bug report using the “primacy of impact exception” asset. Impacts in Scope

(For Blockchain/DLTR and Smart Contracts Only) This program is considered to be governed by Primacy of Impact. For more information on what this means visit: Best Practice - Primacy of Impact vs Primacy of Rules.

Impacts are based on the Immunefi Vulnerability Severity Classification System V2.2.