⚠️ An update on the phishing emails targeting the Giveth community:
We found a vulnerability that exposed some project owners’ email addresses.
Our GraphQL API was incorrectly configured, enabling email addresses to be queried. This was an oversight on our side, and we take responsibility for it.
The vulnerability has now been patched, and we’ve strengthened our security measures.
Email addresses were the only private user data exposed as we do not collect any KYC or identity verification data.
We’re sorry to everyone affected, and grateful to the community members who alerted us so quickly.
And as a side comment, if you ever see a phishing link or any other crypto scam, report it to the lovely folks at Seal 911 on telegram: `@seal_911_bot`