Security
Security & disclosure
Report vulnerabilities that affect payments, unlock delivery, or buyer wallets. Do not test with real customer funds. Do not attempt to drain the treasury.
Contact
- Email: [email protected]
- Operator: Joseph Lamar Taylor
- X DM: @OmgawdMadeit
- GitHub: omgawdmadeit1
- Machine file: /.well-known/security.txt
Rules of engagement
- We will never ask for a seed phrase, private key, or to connect a wallet to verify a refund on a new domain.
- Preferred languages: English.
- First response target: 48 hours.
- No published bug-bounty fund yet — we will not invent one.
Scope
In scope: lvlltd.com payment/unlock APIs, catalog integrity, sealed-pack delivery, proof ledger honesty. Out of scope: third-party wallets, Base itself, sister marketing sites except where they share auth or keys.