Security
The official Orion app is app.orionfinance.ai. Bookmark it and always confirm the URL uses HTTPS before connecting a wallet.
For security-related questions or to report a vulnerability, contact security@orionfinance.ai. Do not open a public GitHub issue.
During a protocol incident, follow Incident Response and treat only official channels as authentic. Ignore DMs that ask you to sign, "validate," or visit a new URL.
Before you Connect
- Accessing the App - official URL, bookmarking, HTTPS
- Connecting a Wallet - supported wallets and connect flow
Transactions and Approvals
- Transaction Flow - what each wallet prompt means, exact-amount approvals, vault as spender, and revoking allowances on revoke.cash
Protocol Security
- Security overview - disclosure, audits, and trust assumptions
- Incident Response - public response plan and communication channels
- Risks - smart contract, execution, oracle, and user-side security risks