
Hinkal Bug Bounty on HackenProof
Hinkal pays $5,000 to $10,000 for critical bugs in its privacy smart contracts and zero knowledge circuits. The program on HackenProof is open and rolling.
The Hinkal Bug Bounty is a live program on HackenProof that started on September 3, 2026. Hinkal builds privacy infrastructure for stablecoin payments and on chain financial operations.
Critical findings pay $5,000 to $10,000. High, medium and low severity findings carry no reward in this program.
The scope covers the core protocol smart contracts and the zero knowledge circuits that gate fund movement. Researchers should focus on the contracts and circuits directories of the public GitHub repository. Hinkal is looking for issues such as unauthorized fund access, improper balance management, proof verification bypasses or anything that compromises the protocol's privacy mechanisms.
To take part you need a HackenProof account with at least 150 reputation points and must pass KYC. Reports need a runnable proof of concept, and reports written by AI without one are rejected. Only the first reporter of a vulnerability is paid, and a bug must be reported within 24 hours of discovery. A small submission fee applies. Current or former employees and contractors cannot take part.