defirisk.co
rubric v1.7.0

Bug bounty presence & max payout

Yearn Finance's assessment for RD-F-007 — scored yellow on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

Active Immunefi program 'yearnfinance' confirmed. Max payout $200,000 for critical smart contract vulnerabilities. Tiers: Critical $20K–$200K, High $5K–$20K, Medium $1K–$5K. Active since 2021-07-01. 41 assets in scope. Max payout $200K is below the $500K green threshold; within the $50K–$499K yellow band.

Sources #

Methodology #

Check whether a public bug bounty program is active for this protocol and record the maximum payout in USD.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol yearn-finance factor RD-F-007 score yellow collected_at 2026-05-16 08:34:32