Security
At Alpen Labs, we prioritize the security of our users and the integrity of the Bitcoin ecosystem. We engage with top-tier security firms to rigorously audit our circuits, bridge contracts, and core protocol logic.
Current Security Status: The mainnet v1 contracts are currently under active audit. The reports listed below cover the Alpha/Testnet implementations.
Audit Log
We maintain a transparent record of all third-party assessments.
| Report Date | Auditor | Scope/Project | Report Link |
|---|---|---|---|
| 2025-8 | Least Authority | Orchestration Layer | Link |
| 2025-11 | Halborn | Secret Service (strata-bridge) | Link |
| 2025-11 | Zellic | DashBoard Front End and Backend | Link |
| 2025-11 | Zellic | Faucet Front End and API | Link |
| 2025-12 | Zellic | P2P | Link |
| 2025-12 | Zenith | g16 and CKT | Link |
Bug Bounty Program
We run an active Immunefi bug bounty program for critical vulnerabilities.
Report a vulnerability on Immunefi
Responsible Disclosure
We follow the official security.txt standard (RFC 9116). View our security.txt
Preferred contact channels:
- Open an issue on GitHub: https://github.com/alpenlabs/alpen/issues
- Email: security@alpenlabs.io