NEAR values the independent security research community and believes that responsible disclosure of security vulnerabilities helps us ensure the security and privacy of all our users.
Please do NOT raise a GitHub Issue to report a security vulnerability. If you believe you have found a security vulnerability, please submit a report through the NEAR Intents' bug bounty program on HackenProof: https://hackenproof.com/programs/near-intents-bridges
Non-vulnerability-related security issues, such as new ideas for security features, are welcome on GitHub Issues.
Reports from our independent security audits are published in audits.