Intro
The Immunefi All Stars is a group of top-tier security researchers handpicked to receive access to the most exclusive earning opportunities and benefits in web3 security. They are simply the best in web3 and show it with excellence, commitment, and consistency in hunting on project code.
Qualifying to Become an All Star
Security researchers with prior Immunefi experience can become All Stars by meeting the earnings requirements below.
The primary qualification mechanism is based on the total earnings on Immunefi.
Ranks |
Minimum Earnings to Qualify |
Elite SR | $500,000 |
Senior SR | $100,000 |
Associate SR | $50,000 |
For security researchers not on the Immunefi Leaderboard or who don't meet the required qualifications, below are alternative qualification pathways:
Please provide verifiable proof of equivalent performance and achievements for the rank you believe you qualify for, such as a competitive leaderboard position or similar performance indicators from top-tier security firms.
Successful applicants may become All Stars at the corresponding level.
You can demonstrate your security expertise through:
- Submissions of bugs and vulnerabilities on other platforms or programs
- Public security audits and reports
- Contributions to security tools and frameworks
- Technical blogs and publications
- On-chain security and incident response experience
If you believe you have the qualifications, apply to become an All Star. Our team will review your submitted proof, and based on its strength and validity, you'll be assigned a rank.
All Star Benefits
Once you're an All Star, exclusive perks are all yours. Here's what awaits you:
- Ability to unlock private audits
- Special bonus pools from audit competitions
- Preferential access to Invite-Only Programs
- Exclusive access to Immunefi Pull Request Reviews
- Dedicated support manager
- Early access to new features on Immunefi
Audit Competition Benefits
All Star Pool
The All Star pool is allocated exclusively for Immunefi All Stars and is 20% of the overall reward pool. All Stars can earn from the All Star pool in addition to earning from the primary reward pool.
Any All Star security researcher taking part in the competition qualifies for performance-based fixed pay if they finish in the top 10%, 33%, or 50% of the competition leaderboard, with the fixed pay amount varying in tiers corresponding to their All Star rank.
The pool is initially divided into 7 shares (expressed below as percentages).
- Elite SRs (4 shares): 57.1% of ASPpool (ASP * 4 /7), with the requirement to rank in the top 10%.
- Senior SRs (2 shares): 28.5% of ASPpool (ASP * 2 /7), with the requirement to rank in the top 33%.
- Associate SRs (1 share): 14.2% of ASPpool (ASP * 1 /7), with the requirement to rank in the top 50%.
Consider a contest with an overall reward pool of $250,000 and an All Star pool of $50,000 pool. The pool is initially divided into 7 shares (each worth approximately $7,142.86), allocated as follows:
- Elite SRs: 4 shares (≈ $28,571.43), with the requirement to rank in the top 10%.
- Senior SRs: 2 shares (≈ $14,285.71), with the requirement to rank in the top 33%.
- Associate SRs: 1 share (≈ $7,142.86), with the requirement to rank in the top 50%.
If no one in a particular level meets their performance requirements, that level’s shares are removed and the All Star pool rewards are proportionally distributed to any remaining levels.
If no All Stars meet the requirements, the pool is folded back into the overall pool for everyone to earn from.
Podium Pool
The Podium Pool is reserved for any security researchers who rank in the top three of an audit competition, with a slight bonus for All Star members.
The Podium Pool will make up 10% of the overall reward pool for each competition.
For example, if the overall pool is $250,000, the Podium Pool will be $25,000.
Reward Distribution
Rewards from the Podium pool are split almost equally between 1st, 2nd, and 3rd place.
All Stars get marginally more if they place compared to non-All Stars, according to this formula:
- All Stars = 1.2 points
- Non-All StarsAll Stars = 1 point
For example:
- 2 All Star members and 1 non-All Star member place in the top 3
- Total Podium Points = 3.4
Payouts:
- A: (1.2 / 3.4) × $25,000 = $8,823.53
- B: (1.0 / 3.4) × $25,000 = $7,352.94
C: (1.2 / 3.4) × $25,000 = $8,823.53
Private Audits
All Star members can get access to private audit opportunities via Immunefi Audits, but not every All Star has access by default.
Three scenarios are possible:
- Some All Star members are in audits-only status, meaning they don't have access to other benefits.
- Some All Star members have access to all benefits, including audits
- Some All Star members have access to all benefits, but don't have audits unlocked
- For All Star members in this category, unlocking access to audits is possible through active participation on Immunefi and improving their skillset. Immunefi regularly reviews members to see if they're ready to unlock audits.
Pull Request Reviews
All Star members are eligible to participate in pull request reviews, a new earning opportunity recently launched on Immunefi. In short, eligible projects can request a pull request review after fixing a bug report they've received via Immunefi. An All Star member will be matched with the project based on their background and skillset and receive earnings based on their work.
Dedicated Support Manager
Immunefi All Stars (minus audits-only status) each have a dedicated support manager. What this means is that All Stars each have a private channel with their dedicated support manager and the rest of the Immunefi team, where they can receive personal assistance on problems or questions.
For example, if you're wondering about whether an issue is in-scope or wondering if assets are updated on a bug bounty program, we will engage with the project directly on your behalf before you hunt to make sure the program is up to date and your time is not wasted.
We'll also be happy to follow along with all of your submitted reports to make sure they're treated fairly.
All Star Expectations
- Meet the activity requirements by hunting regularly across Immunefi audit competitions, invite-only programs, bug bounty programs, and audits. If you have a preference for one over the other, that's okay.
- Maintain good standards of behavior and follow the Immunefi Rules.
- Give your absolute best when hunting.
- Be a good ambassador of the Immunefi All Stars.
- Feature your Immunefi All Star membership on your Twitter/X profiles.
E.g.
@Immunefi Elite All Star
@Immunefi Senior All Star
@Immunefi Associate All Star
For those in audits-only status:
@Immunefi All Star Auditor
Minimum Activity Requirements (for continued membership):
Either
- Participate in at least 1 Audit Competitions, Attackathons or Invite-only programs offered per month
Or
- Hunting on BBPs (1 valid report every two months)
Or
- Doing Audits (1-2 audits per month)
- Doing PR Reviews (1 per month)
Failure to meet these criteria may result in being put on probation.
Going above and beyond the Activity Requirements is the best way to level up and progress your career as an All Star.
Probation and Removal Policy
If a security researcher fails to meet the specified requirements, their All Star membership may be affected. Keep in mind that removal is not the first step; we begin with probation.
When a security researcher is under review for probation, we consider personal circumstances, the difficulty or availability of opportunities, and any other factors that might have affected participation. If our review concludes that involvement is insufficient, even after these considerations, the All Star membership will be temporarily suspended until further notice.
The probationary period is determined on a case-by-case basis and may extend up to 90 days. However, if our review finds that the researcher participated or intended to participate in good faith, or is otherwise in good standing, they will not be removed or suspended.
FAQs
Are there any exclusivity requirements for participating in Immunefi All Stars?
No. Unlike some industry programs that require an exclusivity agreement, Immunefi does not force whitehats into an exclusivity arrangement. SRs are free to participate in other platforms or contests, provided they continue to meet All Star activity requirements.
How is audit access decided for All Stars?
Audit access is decided by responsiveness, activity levels, tech stack, performance, and other similar factors.
1. Some All Stars will be in 'audits-only' status, meaning they are only eligible to do audits and not eligible to receive the rest of the All Star benefits.
2. Some All Stars have access to all benefits, including audits. These are full All Stars.
3. Some All Stars will have to unlock access to audits through future performance.
How do contest size and conditional rewards affect my potential earnings?
The reward structure is scalable, meaning that larger contests unlock a higher overall All Star reward pool, thereby offering greater earning potential per All Star compared to smaller competitions. For instance, in a $500k attackathon, the funds allocated for All Star rewards would be significantly higher than those in a $50k contest.
Importantly, both the All Star pool and the Podium pool are set aside regardless of whether the contest operates under a flat pot or a conditional rewards model, ensuring that these incentives are always available to recognize and reward top performance.
Can non-All Star researchers earn from the Podium Pool, and if so, how does their reward differ?
Yes, non-All Star researchers are eligible to earn from the Podium Pool. However, their reward is calculated using a 1.0x multiplier, whereas All Stars receive a 1.2x multiplier. This means All Stars receive a proportionally larger share of the Podium Pool.
I received a response saying my application was rejected or the All Star program is full. How do I get in?
Abide by the All Star Code of Conduct, hunt actively on Immunefi, support Immunefi’s mission where you can, and be patient. Keep learning and getting more wins on Immunefi. The Immunefi All Stars program is demanding, and so spots will open up over time if you’re a quality candidate.
Can I take breaks from the program?
Yes. We won’t hold it against you if you need to take a career break, whether that’s a two-week sabbatical, or two year journey of self-discovery. We’ll temporarily remove you from the program, and if you feel ready to join again, just hit us up.
Can I still hunt on other platforms and say yes to opportunities elsewhere?
Yes, we believe in freedom of choice. You can choose to pursue any opportunities that come, but in order to maintain access to All Stars, you will need to continue to meet the activity requirements or give up your seat to other qualified whitehats who are waiting to join the program.
Comments
0 comments
Article is closed for comments.