Introducing ParaSpell XCM Tools Bug bounty 🪲

Dear Polkadot forums community! :waving_hand:

After our successful referenda, we’re excited to officially launch the Bug Bounty Program for xcm-tools with 10K USDC reward pool!
If you’re a developer, tester, or power user, this is your opportunity to get rewarded for improving the project — whether by reporting bugs or fixing them.


:light_bulb: How It Works

:lady_beetle: Report a Bug

  • Open an issue in the repository and select Bug bounty report

  • Rewards based on severity:

    • :white_circle: Very Low: $5
    • :green_circle: Low: $10
    • :orange_circle: Medium: $20
    • :red_circle: High: $30

:wrench: Fix a Bug

  • Claim an open issue by commenting:

    I would like to reserve this issue.

  • You’ll have 48 hours to submit a PR (Can be extended if needed).

  • Rewards based on complexity:

    • :white_circle: Very Low: $15
    • :green_circle: Low: $10–$20
    • :orange_circle: Medium: $30–$70
    • :red_circle: High: $80–$250+

:straight_ruler: How We Judge

  • Severity: Based on the bug’s impact (UI glitch vs crash/security flaw).
  • Complexity: Based on size of the fix, files changed, tests included, etc.

Details here :backhand_index_pointing_right: Official documentation


Let’s build a better XCM tool stack together :mechanical_arm:.

If you have any suggestions on how to improve the program feel free to let us know :sparkles:. Thanks!

With kind regards,
Team ParaSpell✨

We would like to bump this thread.

We still have approximately 4.000$ in the bounty left.

We would like to thank every bug finder in advance!

The docs have been reconstructed so link in main post no longer works. Here is new link for bug bounty information: 🛠️ Contributing to xcm-tools | ParaSpell

With kind regards,

Team ParaSpell​:sparkles: