JUSTYPE
Profile
TransparencyNO CONTRACTS DEPLOYED

Security starts with saying what exists.

JUSTYPE currently has a tested frontend rule system. It has no smart contracts, deployed execution layer, contract audit, or bug-bounty program.

01FrontendExists today

Rule parsing, normalization, validation, local storage, review, and visualization.

02Automated testsExists today

Focused coverage for parser behavior, validation, storage shape checks, genesis isolation, and score modeling.

03Smart contractsDo not exist here

No JUSTYPE token, hook, router, registry, staking, reward, or settlement contract.

04AuditNot performed

No smart-contract audit report or frontend security certification is published.

01

What has been tested

Unit tests exercise recognized and unsupported parser paths, fee allocation normalization, validation conflicts, Behavior Score rule coverage, browser-storage shape guards, deterministic trade arithmetic, and isolation of internal fixtures from public genesis.

The production nginx configuration adds HTTPS redirection, HSTS, MIME sniffing protection, same-origin framing, a strict-origin referrer policy, and disables camera, microphone, and geolocation through Permissions Policy. Those headers reduce specific web risks; they do not make the application or future contracts secure by default.

02

What has not been audited or deployed

No contract source exists in this repository, so there is no bytecode, deployment address, admin model, upgrade policy, custody path, access control, invariant suite, audit scope, or chain-specific risk to verify. Wallet connection, real trading, staking, and indexing are disabled.

There is also no documented bug bounty, private vulnerability inbox, disclosure policy, or response SLA.

03

Security changes when execution exists

One product, two clearly separated states.
CURRENT PRODUCT
  1. 01Parse
  2. 02Normalize
  3. 03Validate
  4. 04Review + Behavior Score
  5. 05Browser-local profile
PLANNED · NOT DEPLOYED
  1. ARule compiler / adapter
  2. BHook execution
  3. CSettlement + indexing

No JUSTYPE contract, hook address, or live execution path exists in this repository.

A future execution layer would require a new threat model and security program: contract-level invariants, callback/reentrancy analysis, delta settlement checks, custody and routing review, access and oracle assumptions, deployment provenance, tests against adversarial pools/tokens, independent audits, and a responsible disclosure channel.

04

Report a security issue

The only configured official contact is @justypedotfun on X. Because it is a public social channel, request an appropriate private reporting path before sharing sensitive exploit details. No response time is promised.

Never send a seed phrase, private key, password, or funds. For support scope, read Support.