🪐
Cantina Docs
  • 🪐Welcome to Cantina
  • 🤝Services
    • Security Reviews
    • Competitions
    • Bug Bounty
    • Guilds
    • Public Goods
  • 💵Referral program
  • 📄Public Reports
  • 👑Reputation
  • 👥Cantina Account
    • 🔷Claim an Account
    • 🔷Company Account
      • 🔹Create a Company Account
      • 🔹Managing users
      • 🔹Company Dashboard
      • 🔹Company Reviews
    • 🔷Security Researcher Account
      • 🔹Create Security Researcher Account
      • 🔹Security Researcher Dashboard
      • 🔹Calendar
      • 🔹Reviews
      • 🔹KYC and Payments
  • 💻Cantina Code
    • 🕵️Cantina Code for Security Researchers
      • 🔶Code Review
        • 🔸Download content and toggle sidebar
        • 🔸Highlighting code
      • 🔶Findings
        • 🔸Findings Submission
        • 🔸Findings Labels
        • 🔸Findings Status
        • 🔸Add code to existing finding
        • 🔸Examples
      • 🔶Chat
      • 🔶Reports
      • 🔶Comments & Pings
      • 🔶Diagrams & Formulas
    • 🏢Cantina Code for Companies
      • 🗄️Responding to Pings
      • 🗄️Responding to Findings
      • 🗄️Report Generation
  • 🏆Cantina Competitions
    • 🕵️For Security Researchers
      • 🔶Payments
      • 🔶Teams
      • 🔶Finding Status
      • 🔶Finding Labels
    • 🏢For Companies
      • 🗄️Competition Submission Template
    • 🧑‍⚖️Judging Process
      • 📜Finding Severity Criteria
      • 📜Scoring
      • 📜Judging Phase
      • 📜Escalation Process
    • 🤝 Fellowship Steward Model
  • 💰 Cantina Bounties
    • Bounty Severity Classification
    • Mediation Process for Bounties
  • ✅ Cantina Bug Bounty Coverage
    • Cantina Coverage Details
  • ❓FAQ
    • ❔FAQ Competitions
    • ❔FAQ Security Reviews
  • 🔗Links
Powered by GitBook
On this page
  1. Cantina Code
  2. Cantina Code for Security Researchers
  3. Findings

Findings Status

PreviousFindings LabelsNextAdd code to existing finding

Last updated 3 months ago

Statuses represent the state of a finding. The importance of each status is dependent on the type of security review and by the Cantina Repository administrator priorities. The image below represents a finding with a Confirmed status.

The most standardized statuses are the following:

Finding Status
Explanation

New

Once a finding is submitted by the security researcher, it will be labelled as new by default.

Confirmed

When the finding is valid, it will be labelled as confirmed and be awarded based on the competition prize pool.

Acknowledged

After a finding is confirmed by the judge, the competition sponsor will have to acknowledge and double confirm the issue.

Fixed

The sponsor after acknowledging issues can apply fixes to the code. This label is used for bookkeeping of issues already fixed.

Withdrawn

If the researcher submits an issue and decides to withdraw it for any reason, the finding will be labelled as "Withdrawn".

💻
🕵️
🔶
🔸
Confirmed status
Vulnerability assessment summary bar.