From 2bfc4cee73ea597536ed193b3783e02239e73626 Mon Sep 17 00:00:00 2001 From: Dmitry <98899785+mdqst@users.noreply.github.com> Date: Sun, 3 Nov 2024 20:58:53 +0300 Subject: [PATCH] Typos Update SECURITY.md Typo corrections --- SECURITY.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index bb8bab5..f205d4f 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -14,7 +14,7 @@ Send the email from an email domain that is less likely to get flagged for spam This is an actively monitored account, the team will quickly respond. -If you do not receive a response within 24 hours, please directly followup with the team in [Discord](https://discord.com/invite/petrawallet). by reaching out to anyone with the role “Aptos Labs”. +If you do not receive a response within 24 hours, please directly followup with the team in [Discord](https://discord.com/invite/petrawallet) by reaching out to anyone with the role “Aptos Labs”. As above, please DO NOT include attachments or provide detail regarding the security issue in this email. @@ -37,13 +37,13 @@ We are working on a process to accept non-critical bugs that result in heavy neg ## **Report Details** - Summary of the issue -- Does this relate the definition of a critical issue as defined above? Which point? +- Does this relate to the definition of a critical issue as defined above? Which point? - Clear and complete steps to repro the issue - If applicable, proposed solution ## **Payment of Bug Bounties** -- Bounties are currently awarded on a rolling/weekly basis and paid out within 30 days upon receipt successful KYC and payment contract. +- Bounties are currently awarded on a rolling/weekly basis and paid out within 30 days upon receipt of successful KYC and payment contract. - The APT/USD conversion rate used for payments is the market price of APT (denominated in USD) at 11:59 PM PST the day that both KYC and the payment contract are completed. - The reference for this price is the Closing Price given by Coingecko.com on that date given here: [https://www.coingecko.com/en/coins/aptos/historical_data#panel](https://www.coingecko.com/en/coins/aptos/historical_data#panel) - Bug bounties that are paid out in APT are locked to the account provided by the reporter with a lockup expiring 12 months from the date of the delivery of APT. @@ -68,4 +68,4 @@ Note, reports that come in after the issue has been fully triaged and resolved w This bug bounty program is only open to individuals [outside the OFAC restricted countries](https://home.treasury.gov/policy-issues/financial-sanctions/sanctions-programs-and-country-information). Bug bounty hunters will be required to provide evidence that they are not a resident or citizen of these countries in case the submission is eligible for a reward. If the individual is a US person, tax information will be required, such as a W-9, in order to properly issue a 1099. Aptos requires KYC to be done for all bug bounty hunters submitting a report and wanting a reward. Form W-9 or Form W-8 is required for tax purposes. All bug bounty hunters are required to use Persona for KYC, links will be provided upon resolution of the issue The collection of this information will be done by the Aptos Labs. -If an impact can be caused to any other asset managed by Aptos that isn’t on this table but for which the impact is in the Impacts in Scope section below, you are encouraged to submit it for consideration by the project. \ No newline at end of file +If an impact can be caused to any other asset managed by Aptos that isn’t on this table but for which the impact is in the Impacts in Scope section below, you are encouraged to submit it for consideration by the project.