Harden vintage x86 reward validation against self-reported arch spoofing#8022
Harden vintage x86 reward validation against self-reported arch spoofing#8022dtopenclaw wants to merge 8 commits into
Conversation
|
Welcome to RustChain! Thanks for your first pull request. Before we review, please make sure:
Bounty tiers: Micro (1-10 RTC) | Standard (20-50) | Major (75-100) | Critical (100-150) A maintainer will review your PR soon. Thanks for contributing! |
|
Thanks for taking this on — it's a genuine, substantial attempt and the structure is right (reward-only layer, anchored brand, no identity rewrite). But bounty #16271 requires surviving adversarial security review with zero blocking findings, and an independent Codex+Grok pass found 4 blockers that keep the spoof open. Fix these and resubmit — the bounty stays yours to win:
Also worth tightening: the anchored brand grammar rejects legitimate strings like |
|
Addressed the four blocking findings and tightened the evidence gate through commit |
Closes the deliverable in Scottcjn/rustchain-bounties#16271.
What changed
Security properties
Validation
RTC payout wallet: RTCc35559a7c3921c1a4a18ddfb40f0e38e810eaa4b