
Glo Dollar
Bounty Range
$500 - $50,000
external program
Glo is the fiat-backed stablecoin that funds public goods.
Stablecoin companies generate $7 billion per year from their stablecoin reserves. Our approach is different—we funnel all our profits to public goods and charities. By adopting Glo Dollar, you're funding public goods. At zero cost to you.
Glo Dollar allows you, the holder, to choose which causes to support. That includes poverty alleviation, decarbonization programs and Web3 Open Source.
So by choosing Glo Dollar instead of USDC / USDT, stablecoin users can support crypto at large instead of shareholders.
Website: https://www.glodollar.org
Asset Type: Smart Contracts
Chains: ETH, Celo, Optimism, Arbitrum, Polygon, Other
Programming Language: Solidity
Product Type: DeFi
Project Category: Stablecoin
KYC Required: Yes
PoC required. Direct theft of any user funds, whether at-rest or in-motion, other than unclaimed yield, Permanent freezing of funds, Miner-extractable value (MEV), Predictable or manipulable RNG that results in abuse of the principal, Protocol insolvency.
PoC required. Temporary freezing of funds for at least 1 hour
Smart contract unable to operate due to lack of token funds, Block stuffing for profit, Griefing (e.g. no profit motive for an attacker, but damage to the users or the protocol), Theft of gas, Unbounded gas consumption.
Smart contract fails to deliver promised returns, but doesn't lose value
Not eligible
Glo Dollar adheres to Remedy's terms and conditions. See the rules under "Unethical behavior" for more details about responsible publication and other policies.
All High and Critical Smart Contract bug reports must come with a PoC with an end-effect impacting an asset-in-scope in order to be considered for a reward. Explanations and statements are not accepted as PoC and code is required.
Glo requires KYC to be done for all bug bounty hunters submitting a report and wanting a reward. The information needed are name, address, date and full amount you claim, clearly stated on an invoice. The collection of this information will be done by the project team.
Payouts are handled by the Glo team directly and are denominated in USD. However, payouts are done in USDC.
Glo Dollar (USDGLO) on Ethereum https://etherscan.io/token/0x4F604735c1cF31399C6E711D5962b2B3E0225AD3
Glo Dollar (USDGLO) on Polygon https://polygonscan.com/token/0x4F604735c1cF31399C6E711D5962b2B3E0225AD3
Glo Dollar (USDGLO) on Celo https://celoscan.io/token/0x4f604735c1cf31399c6e711d5962b2b3e0225ad3
Glo Dollar (USDGLO) on Optimism https://optimistic.etherscan.io/token/0x4f604735c1cf31399c6e711d5962b2b3e0225ad3
Glo Dollar (USDGLO) on Base https://basescan.org/token/0x4f604735c1cf31399c6e711d5962b2b3e0225ad3
All smart contracts versions of Glo can be found at https://gitlab.com/global-income-coin/usdglo. However, only those in the Assets in Scope table are considered as in-scope of the bug bounty program.
If an impact can be caused to any other asset managed by Glo Dollar that isn't on this table but for which the impact is in the Impacts in Scope section below, you are encouraged to submit it for the consideration by the project. This only applies to Critical impacts.
The following vulnerabilities are excluded from the rewards for this bug bounty program:
Only the impacts mentioned in the payout section are accepted within this bug bounty program. All other impacts are not considered as in-scope, even if they affect something in the assets in the scope table.