BextreeBextree

Security

How Bextree protects your wallet, your funds, and your data.

Wallet authentication, without passwords

Bextree has no accounts, no passwords, and no email/password database to breach. Every action tied to your wallet — placing a bid, listing an asset, viewing your account — works by having your wallet sign a one-time message to prove it's really you. That message can only ever be used once and expires almost immediately, so it can't be captured and reused later.

This means Bextree never asks for your private key or seed phrase, and never could — wallet signing happens entirely in your own wallet extension, on your own device.

Funds held in escrow, not by Bextree

When you win an auction, your payment is transferred into an on-chain escrow account governed by a settlement program — not into a Bextree-controlled wallet. That escrow only ever releases funds according to rules encoded in the program itself: to the seller once settlement is verified, or back to you in full if the settlement fails. Bextree cannot arbitrarily move funds sitting in escrow.

LP-type positions (from Orca, Raydium, and Meteora DAMM v2 NFT Positions) are locked into a similar on-chain vault program before their auction ever goes live, so the asset itself is already secured by the time anyone bids on it. Streamflow and Jupiter Lock positions can't be pre-custodied the same way — only the current holder can transfer one — so those sellers post a refundable settlement bond instead, forfeited only if they fail to deliver within the settlement window. See Buyer Protection and Risk Disclosure for the full mechanics.

Settlement is verified on-chain, not self-reported

Whether a settlement succeeded or failed is determined by reading real on-chain state — the vault program's status, or the transferred asset's recorded ownership — not by trusting a seller's claim. Neither Bextree nor a seller can mark a sale "complete" without that fact being true on-chain.

Open, auditable on-chain programs

The programs that hold escrowed funds and vaulted assets are deployed on Solana mainnet and are auditable like any on-chain program. Bextree does not use a private, off-chain ledger for anything related to custody or settlement. Upgrade authority for all three programs — and control of the treasury — is held by a Squads multisig, so no single person can change program code or move platform funds.

Full detail — escrow architecture, treasury, upgrade authority, and audit roadmap — lives in the security documentation.

What we don't do

  • We never ask for your seed phrase or private key.
  • We never custody your funds outside of an active, on-chain-verified settlement.
  • We never store passwords, because there aren't any to store.

Reporting a security issue

If you believe you've found a security vulnerability, please contact us directly rather than disclosing it publicly. We take reports seriously and will respond promptly.