Bug Bounties

Enjin

Powered by: 

Allows bounty splitting: 

Average time to first program response: 115

Average time to bounty awarded null: 

Average time to report resolved: 

Handle enjin

Managed program: false

Name: Enjin

Offers bounties: true

Offers swag: true

Response efficiency percentage: 71

Submission state: open

Url: https://hackerone.com/enjin

Website: https://enjin.io

In scope:

  • Asset identifier: Enjin - Ethereum ERC-1155 Contract
  • Asset type: OTHER
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: Mainnet Contract: `0xfaaFDc07907ff5120a76b34b731b278c38d6043C` Goerli Contract: `0x351F37E03668248849FCcD5F74750Ec4F0E7B836 ` **Background** This contract is the official ERC-1155 contract, used by Enjin, for the creation of assets within the Enjin ecosystem. **Additional Conditions** All testing must be conducted on the Goerli (testnet) contract. The deployed contract is identical to that of the Mainnet contract.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: Enjin Coin - Ethereum ERC-20 Contract
  • Asset type: OTHER
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: Mainnet Contract: `0xF629cBd94d3791C9250152BD8dfBDF380E2a3B9c` Goerli Contract: `0x6Ee7E5e4AF23ce44c162920A5bbe2ceadC0aE1f9 ` **Background** Enjin Coin (ENJ) is an Ethereum-based cryptocurrency used to directly back the value of next-generation blockchain assets. It is the gold standard for digital assets. **Additional Conditions** All testing must be conducted on the Goerli (testnet) contract. The deployed contract is identical to that of the Mainnet contract.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: assets.enjin.io,cdn.enjin.io,*.cdn.enjin.io,*.cdn.enjin.cn,cdn.enjin.cn,cdn.enjinx.io,cdn.enjinx.cn,enjinusercontent.com,*.enjinusercontent.com
  • Asset type: URL
  • Availability requirement: low
  • Confidentiality requirement: none
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: https://assets.enjin.io | https://cdn.enjin.io | https://cdn.enjin.cn | https://cdn.enjinx.io | https://cdn.enjinx.cn **Out of Scope** This asset is not available for a bounty as a third-party service (AWS S3) is responsible for the running and maintenance of this domain. However, any vulnerabilities or issues identified will be resolved.
  • Integrity requirements: none
  • Max severity: low



  • Asset identifier: beam.enjin.io,jumpnet.beam.enjin.io
  • Asset type: URL
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: https://beam.enjin.io **Notice** We are **temporarily** suspending bounties for this asset as we are actively working on a major overhaul of this product. We **are** still accepting submissions. **Background** Enjin Beam is a QR-powered blockchain asset distribution service.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: cloud.enjin.io,goerli.cloud.enjin.io,jumpnet.cloud.enjin.io
  • Asset type: URL
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: https://goerli.cloud.enjin.io **Notice** We are **temporarily** suspending bounties for this asset as we are actively working on a major overhaul of this product. We **are** still accepting submissions. **Background** The Enjin Platform is a robust blockchain PaaS (Platform-as-a-Service) that enables developers to fund, promote, monetize, and design video games in previously impossible ways. **Additional Conditions** All testing must be conducted on the Goerli (testnet). The build running on this domain is identical to that of the Mainnet domain.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: com.enjin.mobile.wallet
  • Asset type: APPLE_STORE_APP_ID
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: https://apps.apple.com/us/app/enjin-cryptocurrency-wallet/id1349078375 **Notice** We are **temporarily** suspending bounties for this asset as we are actively working on a major overhaul of this product. We **are** still accepting submissions. **Background** The Enjin Wallet is a secure, feature-packed, and convenient blockchain asset wallet built for traders, gamers, and developers.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: com.enjin.mobile.wallet
  • Asset type: GOOGLE_PLAY_APP_ID
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: https://play.google.com/store/apps/details?id=com.enjin.mobile.wallet **Notice** We are **temporarily** suspending bounties for this asset as we are actively working on a major overhaul of this product. We **are** still accepting submissions. **Background** The Enjin Wallet is a secure, feature-packed, and convenient blockchain asset wallet built for traders, gamers, and developers.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: enjinx.io,enjinx.cn,api.enjinx.io,api.enjinx.cn,*.api.enjinx.io,*.api.enjinx.cn
  • Asset type: URL
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: https://enjinx.io **Background** Users can search for transactions, addresses, blocks, and coins with an ad-free, seamless browsing experience on the integrated blockchain explorer.
  • Integrity requirements: 
  • Max severity: critical