Bug Bounty Program

We reward ethical researchers who identify vulnerabilities, memory leaks, or signature anomalies.

Reward Structure

CRITICAL
Up to $25,000
HIGH
Up to $10,000
MEDIUM
Up to $2,500

Scope & Reporting

In-scope targets include the standalone Windows executable binary, client-side signature generation routines, and WebSocket parsers. Out-of-scope targets include third-party Polymarket CLOB servers and Polygon RPC nodes.

Please submit encrypted reports via PGP to security@tradebotpoly.com per our RFC 9116 security specification at /security.txt.