> For the complete documentation index, see [llms.txt](https://docs.hann.finance/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.hann.finance/ko/security/audits-and-security.md).

# 감사와 취약점 신고

취약점 신고, 컨트랙트 정보와 보안 공지

## 취약점 신고

취약점은 <security@hann.finance>로 신고해 주세요. 다음 내용을 포함합니다.

1. 문제가 발생하는 네트워크, 컨트랙트, 앱 화면 또는 연동 기능
2. 문제 설명과 자금·권한·데이터에 미치는 영향
3. 재현 단계, 트랜잭션 ID 또는 최소 재현 자료
4. 기여자 표기나 보상에 지갑을 사용할 때는 해당 주소

Hann Finance는 취약점을 팀에 먼저 공유하고 조사와 수정 후 공개를 조율하는 방식으로 대응합니다.

## 컨트랙트와 트랜잭션 권한

배포 정보는 [스마트 컨트랙트](/ko/developers/smart-contracts.md)에 있습니다. 트랜잭션을 확인할 때 선택한 네트워크, 토큰과 컨트랙트 주소를 맞춥니다.

토큰 사용 승인과 Permit2 권한에는 사용 주체, 수량과 적용되는 만료 시각이 정해져 있습니다. 스왑이나 차입 트랜잭션이 실패해도 앞서 부여한 사용 권한은 취소되지 않습니다.

스왑 한도는 지정한 수령량과 실행 시각을 제한합니다. [Zapper 사용법](/ko/protocol/zapper.md)은 승인과 묶음 작업을, [리스크 공시](/ko/security/risk-disclosure.md)는 청산·오라클·볼트·브리지 조건을 설명합니다.

## 공지

보안 공지는 Hann Finance 채널에서 확인할 수 있습니다.

* [웹사이트](https://hann.finance)
* [𝕏](https://x.com/HannFinance)
* [Discord](https://discord.gg/tzUgd7c68P)


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.hann.finance/ko/security/audits-and-security.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
