gitbank pfp
gitbank

@gitbank

GitVault is now live on Base Mainnet. We built GitVault because AI agent wallets today are one leaked private key away from being drained. GitVault fixes this with dual signatures: cryptographic ownership + verified social identity. To prove it, we funded a vault with 504 gitUSDC and published the private key publicly at gitbank.io/openhack. Drain it if you can. Private key: 0x1a40cabe6... Vault: 0x639df7b0... Attack surface: Break secp256k1 theoretically possible, practically no Replay a relayer sig blocked by monotonic nonce & 5-min deadline Social engineer the owner's GitHub/X account Find a smart contract bug verified & public on Basescan The private key gives you only one of two required signatures. The second comes from the Gitbank relayer, which only signs after verifying a real command from the vault owner's GitHub or X account. Without it, the contract reverts: "GitVault: invalid relayer sig" The key alone is not enough. Hack it if you can. gitbank.io/openhack
0 reply
0 recast
1 reaction