Mercury Intelligence Inc.

Bug Bounty Program

Last updated: May 16, 2026

We welcome reports from security researchers who help keep Oasis and our users safe. This page outlines how to disclose a vulnerability responsibly.

Reporting a vulnerability

Email security@joinoasis.com with a clear description of the issue, the steps to reproduce it, and any supporting detail such as proof-of-concept code or screenshots.

We aim to acknowledge new reports promptly and will keep you updated as we investigate and remediate.

Safe harbor

We appreciate research that is done in good faith, and we consider good-faith research conducted under this policy to be authorized.

We will not pursue or support legal action for good-faith research, and we will work with you to resolve any issue and coordinate public disclosure.