BugsFeedbackUser SupportUndisclosed AdsSell Out Accounts
  1. Higgsfield

    19
  2. basis.pro

    113
  3. Tria

    99
  4. PredictStreet

    74
  5. Candora

    72
  6. InterLink

    59
  7. Dropee

    82
  8. Startale

    51
  9. PrismaXai

    47
  10. Moove

    39
  11. Dustswap

    38
  12. Pollo AI

    34
  13. Wondershare

    31
  14. KoloHub

    32
  15. Injective

    21
  16. LINE NEXT

    13
  17. Oracle

    98
  18. GFuel

    15
  19. Jordan

    13
  20. TEGPAD

    16
  21. ChainGPT

    15
  22. EVEDEX

    18
  23. Topview AI

    13
  24. ColourLeague

    15
  25. Astar Network

    11
  26. TIMEPHORIA

    11
  27. Nike

    10
  28. Rogue AI

    6
  29. Byzanlink

    9
  30. BetUS

    14
  31. XION

    6
  32. GMI Cloud

    5
  33. MultichainZ

    12
  34. Stanley

    7
  35. Quip Network

    5
  36. Primax

    6
  37. Superform

    4
  38. CROSS

    7
  39. Breathe Divinity

    4
  40. ElevenLabs

    10
  41. Midnight

    4
  42. Superblocks

    6
  43. PhoenixTrade

    4
  44. Mirage

    13
  45. OpenAI GPT Image-2

    7
  46. Cappy

    7
  47. PlayerZero

    4
  48. Perplexity Computer

    5
  49. You.com/ARI

    5
  50. HeyGen

    11
  51. Applied Labs

    5
  52. L'Oreal Paris

    5
  53. PolyAI

    10
  54. Amplitude

    9
  55. Circle

    4
  56. Nexus Labs

    4
  57. Prada

    4
  58. Lemon

    7
  59. LTX

    7
  60. Claude

    5
  61. LumaLabsAI

    4
  62. World Labs

    5
  63. Airwallex

    4
Reports

Superform

Posts

5 total
  1. victortopdefig
    Victor.hl@victortopdefig·May 14
    RT @VictorTopDefiG: so superform just dropped a live bug bounty on cantina and it’s actually worth looking at critical bugs = up to 100,0…
  2. dafarmaeth
    DaFarma@dafarmaeth·May 14
    @CryptoCat_xch @superformxyz @cantinasecurity @SuperformFND Superform was audited several times.... But this team want the most secure experience for their customers and opened a hackaton!! Ultra profesional behaviour!!
  3. cryptocat_xch
    🇺🇦 CryptoCat 🌱@cryptocat_xch·May 14
    Calling all real security chads! 🚨 @superformxyz is live on @cantinasecurity with a $100k Bug Bounty Program with sweet $UP bonus. It's time time to step up, flex your skills and hunt for bugs in the most serious user-owned neobank. Important note: full KYC required before any payout. This one is not for North Korean hackers or any other sponsored clowns. Secure the decentralized protocol, get paid properly, and help make Superform even stronger. Only UP.
  4. gonichigo33
    gonichigo.ink@gonichigo33·May 14
    Superform takes security very seriously! They already had at least 9 audits for the v2 contracts involving different security auditors and researchers. Now they are opening a Bug Bounty Program on @cantinasecurity with a maximum reward of 100,000 $USDC + $UP. It's always been their priority to proactively make sure the whole protocol is safe. Every user should have peace of mind knowing their assets are secure. And @superformxyz continues to double down on that as the ecosystem grows.
  5. victortopdefig
    Victor.hl@victortopdefig·May 14
    so superform just dropped a live bug bounty on cantina and it’s actually worth looking at critical bugs = up to 100,000 usdc & $up tokens high severity = up to 20,000 usdc & $up for context, superform is a non-custodial protocol that allows anyone to build and distribute onchain financial products. basically they let curators build yield vaults (supervaults) on top of multiple strategies. the security layer is wild tho, they use a validator-attested oracle + dual merkle hook validation to keep the price per share accounting clean. that’s a lot of moving parts which is prolly why they need researchers on it. been live since may 1, 2026 with 22 findings already submitted what counts as critical? things like “direct theft of principal from any supervault,” “unauthorized minting or inflation of supervault shares,” or bypassing the pps oracle’s signature validation. basically if you can drain funds or fake the accounting at scale, that’s the big bag tier. the high tier covers stuff like stealing unclaimed fees or freezing user funds for 48+ hours. medium is paid in $up only, which is lowkey a signal they don’t take those too seriously. a few catches tho: - kyc required before payout (yep, dox yourself first lol) - $20 deposit to join - no testing on mainnet, local forks only -you need a working poc (foundry or hardhat) or your submission gets binned safe to say this is built for proper security researchers, not casual hunters. the dual merkle + oracle setup is complex enough that finding a real critical prolly takes deep evm knowledge and time. @superformxyz's architecture is genuinely interesting, if you’re a smart contract dev or researcher, the risk-reward here is not bad at all. for the average degen, like myself this one’s not for us lol, but worth watching what comes out of it. just created a cantina account. not like i'm going bounty or anything. anyways, @cantinasecurity why don't y'all have a dark them layout👀

Superform

Posts

5 total
  1. victortopdefig
    Victor.hl@victortopdefig·May 14
    RT @VictorTopDefiG: so superform just dropped a live bug bounty on cantina and it’s actually worth looking at critical bugs = up to 100,0…
  2. dafarmaeth
    DaFarma@dafarmaeth·May 14
    @CryptoCat_xch @superformxyz @cantinasecurity @SuperformFND Superform was audited several times.... But this team want the most secure experience for their customers and opened a hackaton!! Ultra profesional behaviour!!
  3. cryptocat_xch
    🇺🇦 CryptoCat 🌱@cryptocat_xch·May 14
    Calling all real security chads! 🚨 @superformxyz is live on @cantinasecurity with a $100k Bug Bounty Program with sweet $UP bonus. It's time time to step up, flex your skills and hunt for bugs in the most serious user-owned neobank. Important note: full KYC required before any payout. This one is not for North Korean hackers or any other sponsored clowns. Secure the decentralized protocol, get paid properly, and help make Superform even stronger. Only UP.
  4. gonichigo33
    gonichigo.ink@gonichigo33·May 14
    Superform takes security very seriously! They already had at least 9 audits for the v2 contracts involving different security auditors and researchers. Now they are opening a Bug Bounty Program on @cantinasecurity with a maximum reward of 100,000 $USDC + $UP. It's always been their priority to proactively make sure the whole protocol is safe. Every user should have peace of mind knowing their assets are secure. And @superformxyz continues to double down on that as the ecosystem grows.
  5. victortopdefig
    Victor.hl@victortopdefig·May 14
    so superform just dropped a live bug bounty on cantina and it’s actually worth looking at critical bugs = up to 100,000 usdc & $up tokens high severity = up to 20,000 usdc & $up for context, superform is a non-custodial protocol that allows anyone to build and distribute onchain financial products. basically they let curators build yield vaults (supervaults) on top of multiple strategies. the security layer is wild tho, they use a validator-attested oracle + dual merkle hook validation to keep the price per share accounting clean. that’s a lot of moving parts which is prolly why they need researchers on it. been live since may 1, 2026 with 22 findings already submitted what counts as critical? things like “direct theft of principal from any supervault,” “unauthorized minting or inflation of supervault shares,” or bypassing the pps oracle’s signature validation. basically if you can drain funds or fake the accounting at scale, that’s the big bag tier. the high tier covers stuff like stealing unclaimed fees or freezing user funds for 48+ hours. medium is paid in $up only, which is lowkey a signal they don’t take those too seriously. a few catches tho: - kyc required before payout (yep, dox yourself first lol) - $20 deposit to join - no testing on mainnet, local forks only -you need a working poc (foundry or hardhat) or your submission gets binned safe to say this is built for proper security researchers, not casual hunters. the dual merkle + oracle setup is complex enough that finding a real critical prolly takes deep evm knowledge and time. @superformxyz's architecture is genuinely interesting, if you’re a smart contract dev or researcher, the risk-reward here is not bad at all. for the average degen, like myself this one’s not for us lol, but worth watching what comes out of it. just created a cantina account. not like i'm going bounty or anything. anyways, @cantinasecurity why don't y'all have a dark them layout👀