Security

How Change Jar keeps the minimum and protects it.

Non-custodial by default. The least data required. Every rule that matters lives in the contract.

1

Bank connection

Read-only, scoped to merchant and amount. Revocable from the app or your bank at any time.

2

Wallets

Non-custodial. Sweeps execute from a contract you authorize with a weekly cap.

3

Merchant map

Public and versioned. Changes are reviewed and take effect the following sweep.

4

Disclosure

Security issues go to the security alias at the project domain. We respond within 48 hours.

Round-ups that buy the brand.

Start a jar