Bounty Rolling

Silo Finance bug bounty on Immunefi

Silo Finance pays up to $100,000 in USDC for critical smart contract bugs, through Immunefi. Open on a rolling basis.

The Silo Finance bug bounty on Immunefi pays security researchers for bugs in Silo Lending and Silo Vaults. Silo describes Silo Lending as a non custodial protocol that creates isolated lending markets, and Silo Vaults as single asset vaults that deploy funds in those markets. Rewards are paid in USDC on Ethereum. The program has been live since 30 August 2022 and was last updated on 5 October 2026.

Critical smart contract reports pay at least USD 20,000 and at most USD 100,000. The reward is also capped at 10 percent of the economic damage, and the main factor is the funds affected. High severity smart contract reports pay a flat $5,000. A proof of concept is required for every severity. Critical and high reports need code whose end effect hits an asset in scope. An explanation alone is not enough.

KYC is required before a payout. If the vulnerable contract can be upgraded or paused, only the first attack is considered for a reward. Reports go through the Immunefi submission page.

Source · immunefi.com/bug-bounty/silofinance-v2/information Published 5 October 2026 · Added here 7 October 2026

Quick answers

How much does it pay?

Up to $100,000. It is paid as prizes to the winning entries.

When is the deadline?

There is no fixed deadline. Applications are reviewed as they arrive.

Who can apply?

Security researchers. A proof of concept is required for every severity. Critical and high smart contract reports need code that affects an asset in scope. KYC is required. Applicants from anywhere in the world can enter, unless the eligibility rules say otherwise.

How do I apply?

Through the official page at immunefi.com. The link is at the top of this page.

Which assets are covered?

Silo Lending, described as isolated lending markets, and Silo Vaults, described as single asset vaults that deploy funds in those markets.