Skip to main content

LUSTE Token Security

Our approach to keeping your tokens and the ecosystem secure.

Smart Contract Security

Verified Contracts

All LUSTE contracts are verified on BaseScan, allowing anyone to inspect the source code:

ContractAddressVerified
LUSTE Token0xF320d3e7A4841F4a3052316bf04dB5B84C5b25C2
LusterBridge0x0E2557e51385f053ee1B1Ce29bc394F0E28752f8

Contract Features

LUSTE Token Contract

Built using industry-standard OpenZeppelin contracts:

  • ERC-20 Standard — Full compliance with ERC-20 specification
  • Fixed Supply — No minting function; supply capped at 100M
  • Ownable — Clear ownership for administrative functions
  • No Hidden Functions — All functions are visible and documented

LusterBridge Contract

  • Secure Deposits — Verified token transfers
  • Event Logging — All exchanges recorded on-chain
  • Rate Management — Only owner can adjust exchange rate
  • No User Funds at Risk — Tokens exchanged immediately

Security Best Practices

Our contracts follow:

  • OpenZeppelin Standards — Battle-tested contract libraries
  • Minimal Complexity — Simple, auditable code
  • No Proxy Patterns — Immutable contract logic
  • Event Emissions — Full transaction transparency

Network Security

Why Base?

We chose Base (Coinbase L2) for security reasons:

FeatureBenefit
Ethereum SecurityInherits Ethereum's security model
Coinbase BackingReputable infrastructure provider
Low FeesAffordable transactions for all users
Fast FinalityQuick transaction confirmations

Network Characteristics

  • Chain ID: 8453
  • Consensus: Optimistic rollup
  • Settlement: Ethereum mainnet
  • Block Time: ~2 seconds

User Security

Wallet Best Practices

🔐 Critical Security Rules

  1. NEVER share your seed phrase — LusterCMS will never ask for it
  2. Verify contract addresses — Always double-check before transacting
  3. Use hardware wallets — For large holdings, use Ledger or Trezor
  4. Enable 2FA — Protect your exchange accounts
  5. Beware of scams — We will never DM you asking for tokens
WalletTypeSecurity Level
LedgerHardware⭐⭐⭐⭐⭐
TrezorHardware⭐⭐⭐⭐⭐
MetaMaskBrowser⭐⭐⭐⭐
RainbowMobile⭐⭐⭐⭐
Trust WalletMobile⭐⭐⭐⭐

Transaction Verification

Before confirming any transaction:

  1. ✅ Verify the contract address matches official addresses
  2. ✅ Check the token amount is correct
  3. ✅ Review gas fees
  4. ✅ Confirm you're on Base network

Scam Prevention

Official Channels

ChannelURLVerified
Websitelustercms.com
Appadmin.mdg.pw
Docsdocs.lustercms.com
LinkedIn@LusterCMS
YouTube@LusterCMS

Common Scams to Avoid

Scam TypeWarning Signs
Fake AirdropsUnsolicited tokens in your wallet
Phishing SitesURLs that look similar but aren't official
ImpersonatorsDMs claiming to be "support"
Fake Giveaways"Send tokens to receive more"
Pump & Dump GroupsPromises of guaranteed profits

How to Report

If you encounter a scam:

  1. Do NOT interact with suspicious contracts
  2. Report to security@lustercms.com
  3. Report to the platform where you found it

Bug Bounty

Responsible Disclosure

We encourage security researchers to report vulnerabilities:

  • Email: security@lustercms.com
  • Scope: Smart contracts, web application, API
  • Response Time: 48 hours initial response

Rewards

SeverityReward
CriticalUp to $10,000
HighUp to $5,000
MediumUp to $1,000
LowUp to $250

Out of Scope

  • Social engineering attacks
  • Physical attacks
  • Attacks requiring compromised user credentials
  • Third-party services

Incident Response

What We Do

In case of a security incident:

  1. Immediate Assessment — Evaluate scope and impact
  2. Containment — Limit damage if possible
  3. Communication — Notify affected users
  4. Resolution — Fix the issue
  5. Post-Mortem — Learn and improve

What You Should Do

If you suspect your wallet is compromised:

  1. Don't panic — Act quickly but carefully
  2. Create new wallet — Generate a new seed phrase
  3. Transfer assets — Move tokens to the new wallet
  4. Revoke approvals — Use Revoke.cash to check approvals
  5. Report — Let us know if LusterCMS-related

Transparency

On-Chain Verification

Everything is verifiable on BaseScan:

  • Token transfers
  • Exchange transactions
  • Contract interactions
  • Treasury holdings

Regular Updates

We provide:

  • Quarterly transparency reports
  • Treasury updates
  • Security assessment summaries

Questions?

For security concerns, contact security@lustercms.com. For general questions, contact hello@lustercms.com.