Security

At Alpen Labs, we prioritize the security of our users and the integrity of the Bitcoin ecosystem. We engage with top-tier security firms to rigorously audit our circuits, bridge contracts, and core protocol logic.

Current Security Status: The mainnet v1 contracts are currently under active audit. The reports listed below cover the Alpha/Testnet implementations.

Audit Log

We maintain a transparent record of all third-party assessments.

Report DateAuditorScope/ProjectReport Link
2025-8Least AuthorityOrchestration LayerLink
2025-11HalbornSecret Service (strata-bridge)Link
2025-11ZellicDashBoard Front End and BackendLink
2025-11ZellicFaucet Front End and APILink
2025-12ZellicP2PLink
2025-12Zenithg16 and CKTLink

Bug Bounty Program

We run an active Immunefi bug bounty program for critical vulnerabilities.

Report a vulnerability on Immunefi

Responsible Disclosure

We follow the official security.txt standard (RFC 9116). View our security.txt

Preferred contact channels:

  1. Open an issue on GitHub: https://github.com/alpenlabs/alpen/issues
  2. Email: security@alpenlabs.io