Mercury Intelligence Inc.
Bug Bounty Program
Last updated: May 16, 2026
We welcome reports from security researchers who help keep Oasis and our users safe. This page outlines how to disclose a vulnerability responsibly.
Reporting a vulnerability
Email security@joinoasis.com with a clear description of the issue, the steps to reproduce it, and any supporting detail such as proof-of-concept code or screenshots.
We aim to acknowledge new reports promptly and will keep you updated as we investigate and remediate.
Safe harbor
We appreciate research that is done in good faith, and we consider good-faith research conducted under this policy to be authorized.
We will not pursue or support legal action for good-faith research, and we will work with you to resolve any issue and coordinate public disclosure.