Responsible Disclosure Policy

Responsible Disclosure Policy

Responsible Disclosure Policy

We take the security of our systems seriously. If you've discovered a vulnerability, we want to hear from you, and we commit to working with you in good faith.

We take the security of our systems seriously. If you've discovered a vulnerability, we want to hear from you, and we commit to working with you in good faith.

How to Report

Please send an email to security@firefish.io with:

  • A brief description of the vulnerability.

  • Clear, step-by-step instructions to reproduce it.

  • The potential impact of the find.

Rules & Safe Harbor

  • Do No Harm: Avoid privacy violations, data destruction, or service interruptions.

  • Confidentiality: Please give us a reasonable window to fix the issue before public disclosure.

  • Our Promise: If you act in good faith, we will not pursue legal action and will work with you to resolve the issue quickly.

Reward

While we do not have a formal bug bounty program at this time, we may offer financial rewards on a case-by-case basis for critical, high-impact findings.

How to Report

Please send an email to security@firefish.io with:

  • A brief description of the vulnerability.

  • Clear, step-by-step instructions to reproduce it.

  • The potential impact of the find.

Rules & Safe Harbor

  • Do No Harm: Avoid privacy violations, data destruction, or service interruptions.

  • Confidentiality: Please give us a reasonable window to fix the issue before public disclosure.

  • Our Promise: If you act in good faith, we will not pursue legal action and will work with you to resolve the issue quickly.

Reward

While we do not have a formal bug bounty program at this time, we may offer financial rewards on a case-by-case basis for critical, high-impact findings.

Frequently Asked Questions

Frequently Asked Questions

Frequently Asked Questions

Got more questions?
How can I earn interest on Firefish?
Is investing through Firefish risky?
Do I need to own Bitcoin or crypto to invest?
How and when is my investment paid back?
What if Borrower doesn’t return the money?
Got more questions?
Got more questions?

Subscribe to get
our latest news

Firefish is an open lending marketplace connecting Bitcoiners, institutions and investors.

Firefish operates under the European Markets in Crypto-Assets Regulation (MiCA).
Our authorization is publicly listed in the ESMA Interim MiCA Register under Crypto-Asset Service Providers.

©2026 Firefish. All rights reserved.

Subscribe to get
our latest news

Firefish is an open lending marketplace connecting Bitcoiners, institutions and investors.

Firefish operates under the European Markets in Crypto-Assets Regulation (MiCA).
Our authorization is publicly listed in the ESMA Interim MiCA Register under Crypto-Asset Service Providers.

©2026 Firefish. All rights reserved.

Subscribe to get
our latest news

Firefish is an open lending marketplace connecting Bitcoiners, institutions and investors.

Firefish operates under the European Markets in Crypto-Assets Regulation (MiCA).
Our authorization is publicly listed in the ESMA Interim MiCA Register under Crypto-Asset Service Providers.

©2026 Firefish. All rights reserved.

Subscribe to get
our latest news

Firefish is an open lending marketplace connecting Bitcoiners, institutions and investors.

Firefish operates under the European Markets in Crypto-Assets Regulation (MiCA).
Our authorization is publicly listed in the ESMA Interim MiCA Register under Crypto-Asset Service Providers.

©2026 Firefish. All rights reserved.