πŸ” Security Measures

ONTON Γ— ONION’s infrastructure is built with user safety, token integrity, and decentralized governance in mind. This section outlines key smart contract, application, and treasury security protocols.


πŸ”’ Smart Contract Audits

AreaAudit StatusNotes
ONION Jetton Contractβœ… Scheduled – May 2025Using verified TON audit partner
Genesis NFT & Merge Logicβœ… Code complete – pending external audit
Claim UI & Airdrop EngineπŸ”„ Internal testing – security audit in May
Staking (via TONStakers)βœ… Built on audited base infrastructure

All production contracts will be:

  • Open source
  • Verified on-chain
  • Posted to GitHub prior to TGE

πŸ” Mini App & Claim Flow Security

  • All claim interactions pass through verified Telegram sessions
  • Wallet connections handled via Tonkeeper / OpenMask or QR-verified login
  • No private keys ever stored
  • Session-based access to claim eligibility (snapshot locked)

Anti-spam and anti-sybil defenses include:

  • βœ… One-time claim limitation
  • βœ… Event-specific SBT filters
  • βœ… Anti-bot pattern detection

πŸ§‘β€βš–οΈ Treasury & Governance Safety

  • DAO treasury held in a multi-sig TON wallet (Foundation + stakers)
  • Foundation cannot move community funds without vote execution
  • Grants and emissions must go through proposal flow or delegated budget

🧩 Ongoing Measures

  • ❗ Emergency pause functions on claim/merge if critical vulnerability found
  • πŸ” Continuous bounty + open-source bug submission framework
  • 🧠 Snapshot and proposal system independently logged + Telegram-synced
  • 🧾 Legal compliance reviewed per airdrop/claim campaign