Security

We treat player safety like a legendary drop. Here is how we protect wallets, accounts, and game integrity, plus how to report vulnerabilities responsibly.

Wallet Safety Bug Bounty Disclosure Compliance

Our Security Principles

Security is a continuous quest. We apply least privilege to services, keep keys out of code, pin dependencies when possible, and monitor for suspicious activity. Smart contract interactions are explicit and require user confirmation in the wallet.

Protect Your Wallet

Tip: In your wallet, prefer Sign over Sign and Send unless you intend to broadcast a transaction.

Vulnerability Disclosure and Bug Bounty

If you discover a security issue, report it privately so we can fix it before it is publicly known.

PGP

Request our PGP key via the security email to exchange encrypted reports.

Scope

App front end, APIs, authentication, smart contract integrations, and game servers.

We may recognize impactful, original reports with swag, credits, or bounties at our discretion.

Responsible Disclosure Policy

Security FAQ

Never. No member of Gem Fighter will ever ask for your seed phrase or private key. If anyone does, treat it as malicious.

We publish addresses on official pages and socials. Always cross check multiple official sources before interacting.

We collect only what is necessary for site functionality, analytics, and fraud prevention. See the Privacy and Cookies pages for details.

Report an Incident

If your account or wallet may be compromised, cut connection immediately, rotate keys if possible, and contact us with: