Bug bounty scope gap on highest-TVL contracts
Raydium's assessment for RD-F-183 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Immunefi program has 74 assets in scope. Exclusions are specific known-and-resolved findings from prior audits (not contract address exclusions). Standard AMM v4 ($1B+ TVL), CLMM, and CPMM are all in active bounty scope. $1.7M paid; median 2-day resolution. No high-TVL contract found explicitly excluded from bounty.
Sources #
- URLRaydium Immunefi bounty scope (74 assets, exclusions are resolved findings)Immunefi Raydium bug bounty (74 assets in scope)retrieved 2026-04-29
Methodology #
Determine whether the highest-TVL contracts of this protocol (especially shared primitives: OFT adapters, ZK verifiers, bridge inbox) are explicitly excluded from the protocol's active bug bounty scope.
See the full factor methodology and distribution across all protocols →
rubric_version v1.7.0 protocol raydium factor RD-F-183 score green collected_at 2026-04-29 12:31:55