🪐
Cantina Docs
  • 🪐Welcome to Cantina
  • šŸ¤Services
    • Security Reviews
    • Competitions
    • Bug Bounty
    • Guilds
    • Public Goods
  • šŸ’µReferral program
  • šŸ“„Public Reports
  • šŸ‘‘Reputation
  • šŸ‘„Cantina Account
    • šŸ”·Claim an Account
    • šŸ”·Company Account
      • šŸ”¹Create a Company Account
      • šŸ”¹Managing users
      • šŸ”¹Company Dashboard
      • šŸ”¹Company Reviews
    • šŸ”·Security Researcher Account
      • šŸ”¹Create Security Researcher Account
      • šŸ”¹Security Researcher Dashboard
      • šŸ”¹Calendar
      • šŸ”¹Reviews
      • šŸ”¹KYC and Payments
  • šŸ’»Cantina Code
    • šŸ•µļøCantina Code for Security Researchers
      • šŸ”¶Code Review
        • šŸ”øDownload content and toggle sidebar
        • šŸ”øHighlighting code
      • šŸ”¶Findings
        • šŸ”øFindings Submission
        • šŸ”øFindings Labels
        • šŸ”øFindings Status
        • šŸ”øAdd code to existing finding
        • šŸ”øExamples
      • šŸ”¶Chat
      • šŸ”¶Reports
      • šŸ”¶Comments & Pings
      • šŸ”¶Diagrams & Formulas
    • šŸ¢Cantina Code for Companies
      • šŸ—„ļøResponding to Pings
      • šŸ—„ļøResponding to Findings
      • šŸ—„ļøReport Generation
  • šŸ†Cantina Competitions
    • šŸ•µļøFor Security Researchers
      • šŸ”¶Payments
      • šŸ”¶Teams
      • šŸ”¶Finding Status
      • šŸ”¶Finding Labels
    • šŸ¢For Companies
      • šŸ—„ļøCompetition Submission Template
    • šŸ§‘ā€āš–ļøJudging Process
      • šŸ“œFinding Severity Criteria
      • šŸ“œScoring
      • šŸ“œJudging Phase
      • šŸ“œEscalation Process
    • šŸ¤ Fellowship Steward Model
  • šŸ’° Cantina Bounties
    • Bounty Severity Classification
    • Mediation Process for Bounties
  • āœ… Cantina Bug Bounty Coverage
    • Cantina Coverage Details
  • ā“FAQ
    • ā”FAQ Competitions
    • ā”FAQ Security Reviews
  • šŸ”—Links
Powered by GitBook
On this page
  • Prize-pot Distribution
  • FAQs
  1. Cantina Competitions
  2. Judging Process

Scoring

Prize-pot Distribution

Public security competition works the following way: a prize-pot of funds will be available to be shared among participants who score points. A high severity submission is worth 10 points and a medium severity submission is worth 3 points.

Custom pot for low submissions

In case when two different members submit duplicate findings, the number of points that each person will be scaled down.

The scaling formula is 0.9nāˆ’1n\frac{0.9^{n - 1}}{n}n0.9nāˆ’1​where nnn is the total number of duplicated findings.

For example, if there were duplicated findings for a high severity bugs, instead of getting 10 points each, each would be awarded 4.5 points. In case of 3 duplicates, each person gets 2.7 points.

The scoring mechanism incentivizes unique findings, so finding the one bug that everyone missed can help you get a large payout.

FAQs

  • Does it matter who submitted the finding first?

No, every finding is scored the same regardless of when it was submitted during the contest duration. We highly encourage you to spend time writing great findings. We also encourage submitting it as soon as you have a great write-up. This way, the team can often leave feedback on the finding and plan for fixes. We particularly want to discourage people who submit findings at the last moment.

  • Can I withdraw findings that I submitted?

Yes, you can withdraw findings by going to the finding context menu and clicking 'withdraw finding'.

  • How are low-severity / informational / gas-optimization scored and judged?

Some competitions may have a pool reserved for low-severity, informational and gas-optimization. This would be explicitly mentioned in the competition specific page, and these prizes are awarded for the top findings. Note: only quality of the findings are considered, not quantity. Excellent writeups for high and medium severity findings can also get awards from this separate pot.

PreviousFinding Severity CriteriaNextJudging Phase

Last updated 1 year ago

šŸ†
šŸ§‘ā€āš–ļø
šŸ“œ