This repository contains documentation only. Vulnerabilities in OpenAjo itself belong in the repository that holds the affected code:
| Affected component | Report privately at |
|---|---|
circle / reputation contracts |
openajo-contract → Report a vulnerability |
| SDK, indexer, web app | openajo-app → Report a vulnerability |
Do not open a public issue for a vulnerability.
Report a documentation problem here if it could lead someone to lose funds — for example, a guide that describes slashing or payout rules incorrectly. Use this repository's private reporting form if you would rather not describe it in public.
OpenAjo is unaudited and deployed to Stellar testnet only. Do not use it with mainnet funds.