Security
Security is foundational to everything we build. Here's how we protect the platform and your data.
Security Practices
Encrypted Connections
All traffic to and from RugSol is encrypted using TLS 1.3. We enforce HTTPS across all endpoints and API routes.
No Wallet Access
RugSol never requests wallet connections, private keys, or seed phrases. We only read public on-chain data. Any site claiming to be RugSol and asking for wallet access is fraudulent.
Read-Only Analysis
Our scanning engine performs read-only operations against the Solana blockchain. We never submit transactions, modify token state, or interact with smart contracts on your behalf.
Input Validation
All user inputs, including token addresses, are validated and sanitized before processing. We enforce strict parameter validation on all API endpoints to prevent injection attacks.
Rate Limiting
API endpoints are protected with rate limiting to prevent abuse and ensure fair access for all users. Excessive requests are automatically throttled.
Minimal Data Collection
We collect no personal information, require no accounts, and store no wallet data. Our privacy-first approach means we only process what's necessary to deliver scan results.
Vulnerability Reporting
If you discover a security vulnerability in RugSol, we encourage responsible disclosure. Please report vulnerabilities through our official channels rather than publicly disclosing them.
Contact us via Telegram or GitHub with a detailed description of the vulnerability.
Include steps to reproduce, potential impact, and any proof-of-concept if available.
We will acknowledge receipt within 48 hours and provide updates on the remediation timeline.
Infrastructure
Hosting
Vercel Edge Network
Global CDN with auto-scaling
RPC Provider
Helius
Enterprise-grade Solana RPC
Uptime Target
99.9%
Monitored 24/7