If you discover a security issue in the Tamia_Play2Earn smart contract or related game logic, please do not create a public GitHub issue. Public disclosure could allow exploitation before a fix is deployed.
Report security issues responsibly via email:
Include:
- A clear description of the vulnerability
- Steps to reproduce it
- Environment details (Solana CLI version, Anchor version, deployed program ID)
- Potential impact on token distribution, gameplay, or user rewards
All reports are treated confidentially.
Once a report is received, we aim to:
- Acknowledge receipt within 3 business days.
- Assess the severity and potential impact on token economy and user rewards.
- Work with the reporter to verify the issue.
- Deploy a fix as quickly as possible.
- Optionally credit the reporter, with consent.
Security fixes are prioritized for:
- The latest stable release deployed on Devnet or Mainnet.
- Any active development branch that is publicly deployed.
- Only interact with official $TAMIA Play2Earn contracts deployed from our repository.
- Do not share private keys or mnemonic phrases.
- Avoid using third-party scripts or tools to manipulate scores or rewards.
- Verify transactions and token transfers through Solana wallets you control.
All official security advisories will be published in the Announcements Channel and, when critical, via GitHub Security Advisories.
Subscribe to official channels to stay informed of updates.
Thank you for helping keep $TAMIA Play2Earn fair, fun, and secure! 🐿️🎮