Security at veralux

At VeraLux, security is the foundation of our decentralized ecosystem. We are committed to protecting our community, ensuring the integrity of our platform, and fostering a safe environment for all participants. Through a combination of advanced technical safeguards, regulatory compliance, and community-driven governance, LUX upholds the highest standards of security and transparency.

Technical Safeguards

Reentrancy Protection
A ReentrancyGuard prevents recursive exploits during operations like transfers or staking. By locking the contract state during execution, we eliminate risks of fund drainage or manipulation, ensuring your assets remain secure.
 
Transaction Limits
To prevent market manipulation and stabilize trading, we enforce:
Max Sell per Transaction: 0.1% of total supply (1,000,000 LUX).
Daily Sell Limit: 0.5% of total supply per wallet.
Max Transfer (Non-Sell): 0.5% of total supply per transaction.
Daily Transfer Limit: 0.5% of total supply per wallet.
Cooldowns: 1-minute gap between transactions; 24-hour lockout for transfers ≥0.1% of supply (1,000,000 LUX).
These measures curb rapid sell-offs and protect smaller investors from volatility.
 
Emergency Pause
In crises (e.g., detected exploits), our multisig owners can pause the contract after a 24-hour delay, halting operations except zero-amount transfers. Resumption requires another 24-hour delay, ensuring deliberate, transparent action to shield the ecosystem.
 
Timelocks for Critical Actions
Key operations are time-locked for oversight:
Pause/Resume: 24-hour delay.
Multisig Updates: 24-hour delay.
Whitelist Changes: 72-hour delay.
Large Treasury Withdrawals: (>0.5% of supply): 48-hour delay.
Migration Toggle: 7-day cooldown.
These delays allow community monitoring and prevent impulsive or malicious changes.
 
Whitelisted Contracts
Privileged actions (e.g., reduced-tax transfers) are restricted to whitelisted contracts, verified by program ID and version hash. This versioning blocks outdated or unauthorized upgrades, enhancing operational security.
 
 

 

Governance and Control

Multisig Administration
Critical actions—like pausing, treasury withdrawals, or contract updates—require 2-5 trusted owners with a minimum of 2 signatures. This decentralized control prevents unilateral decisions and mitigates internal risks.
 
Community Governance
Stakers (Tier 1+, ≥100,000 LUX for ≥14 days) propose and vote on security policies, tax rates, and limits. Voting power scales with stake duration (up to ~1.995x after 90 days), ensuring a decentralized, community-aligned approach to security.
 
Withdrawal Delay for Treasury
Withdrawals exceeding 0.5% of total supply (5,000,000 LUX) trigger a 48-hour delay, tracked on-chain. This transparency allows the community to oversee significant fund movements, bolstering accountability.
 
 

 

Compliance and Privacy

 
AML and KYC Protocols
KYC is required for presale purchases ≥$1,000 USDT and certain large transactions, aligning with British Virgin Islands (BVI) and international AML standards.
Data is minimized and encrypted, balancing compliance with user privacy.
 
Jurisdiction
Registered under the BVI’s VASP Act 2022 and overseen by the Financial Services Commission, VeraLux operates in a stable, innovation-friendly legal framework.
 
Data Security
KYC and personal data are encrypted with industry-leading standards and stored securely, complying with GDPR. Our Privacy Policy details usage and user rights, ensuring transparency and protection.
 
 

 

Audits and Transparency

Regular Security Audits
Our Solana-based smart contracts undergo multiple pre-launch audits and ongoing reviews by reputable third-party firms. Reports are publicly accessible at www.veralux.io, reinforcing our commitment to code integrity.
 
Event Logging
Over 40 event types (e.g., transfers, staking, proposals) log key activities on-chain, enabling real-time auditing and monitoring by anyone.
 
Query Functions
Users can access real-time contract data via query_state (contract status) and query_pending_rewards (staking rewards), empowering you to verify the ecosystem’s health.
 

 

User Protections and Responsibilities

 
User Fund Security
Audited, immutable smart contracts manage all token operations.
Multisig controls and cryptographic best practices secure transactions, reducing external risks.
 
Your Role in Security
While we’ve built a fortress of protections, users must:
Secure Your Keys: Never share private keys or recovery phrases.
Enable 2FA: Use two-factor authentication on wallets and accounts.
Stay Informed: Follow official channels for security updates and best practices.
We have educational videos to help you stay safe. Visit our discord for more info.
 
 

 

Our Commitment to You

VeraLux (LUX) is dedicated to a secure, transparent, and resilient ecosystem. We continuously evolve our protocols to counter emerging threats, safeguarding our community’s trust and participation. For inquiries, reach us at security@veralux.io.