Supra · Vulnerability Disclosure
Supra Vulnerability Disclosure
Vulnerability disclosure
Supra runs its own bug bounty and coordinated disclosure program rather than a platform-hosted one. There is a dedicated program page and a separate Bug Disclosure Policy page, both live. There is no security.txt on any host, so an automated scanner following RFC 9116 will find nothing — the program is discoverable only by reading the website.
Supra runs a coordinated vulnerability disclosure program on Hackerone.
BlockchainLayer 1OraclesWeb3Market DataSmart ContractsVerifiable RandomnessCross-Chain BridgeAutomationMoveCryptocurrencyDeFi
Program: Hackerone
Disclosure Policy
Security Contact
Source
Vulnerability Disclosure
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.