Every secondary market listing verifies ticket pricing limits directly in the EVM smart contract logic. Listings exceeding the maximum original markup are aborted automatically.
Social login wallets leverage Circle Multi-Party Computation SDKs. User keys are split and encrypted on-device; no third party, including EventShield, can access your private key.
Check-in ticket signatures expire every 15 seconds. If a screenshot is replicated, the system rejects validation on the network clock.
EventShield smart contracts are written using Solidity v0.8.20 and are compiled and audited prior to deploying to the Arc L1 Testnet chain. Static analysis checks are executed via Slither and Mythril to guarantee zero reentrancy loopholes or arbitrary storage mutations.
We reward security researchers who responsible disclose vulnerabilities in the EventShield smart contracts or frontend interface. Bounties are paid directly in USDC stablecoin on Arc Network.
Direct wallet funds theft, contract balance drain, arbitrary price updates bypass.
Contract state lock, refund policy bypass, ticket metadata hijacking.
RPC query rate limit failure, frontend validation bypass, email logs leak.
Please send encrypted disclosure logs to security@eventshield.io. Do not publish public proof-of-concepts prior to remediation.