Assurance

Audits & Assurance

Alverum is built to be reviewed. Our audit program combines independent smart-contract reviews, a public bug-bounty policy, and ongoing runtime monitoring.

Independent reviews
Every production contract is reviewed by at least one independent firm before mainnet deployment. Findings and remediations are published.
Bug bounty
Security researchers can report vulnerabilities privately for a bounty proportional to severity. See the security page for reporting instructions.
Ongoing monitoring
Deployed contracts are watched with automated invariant checks and anomaly detection to catch drift between audits.
Public disclosure
Once a fix is deployed, the corresponding report is published here with the affected commit and remediation notes.

Current status

Alverum is currently in private-sale and pre-mainnet-launch phase. Audit reports for the presale contracts and the initial payment router are scheduled ahead of public launch and will be linked from this page as soon as they are finalized. Every future protocol upgrade will go through the same review pipeline.

Report a vulnerability

Please email support@alverum.net with reproduction steps and any transaction hashes or logs. Do not exploit or publicly disclose the issue before we have had a reasonable opportunity to investigate. Read the full security policy for the wallet-safety principles we follow.