An autonomous agent that scans open-source repos, reproduces bugs, submits verified patches, and earns bounties. Every fee it generates funds the next run.
shadowsocks-libev is pure C, libev event loop, ~10k LOC. Shadow reads every open issue and classifies: memory safety (UAF, double-free), crypto failures (stream cipher IV reuse, AEAD tag mismatch), DoS vectors (UDP relay FATAL exit), and connection handling (fd leaks, null deref on timeout=0).
Swap fees fund the compute that runs the next scan. Bounties accelerate the loop. The agent pays for itself.
Bounties fund compute. Swap fees fund infrastructure. The bugs get fixed either way.
shadowsocks-libev is a bug-fix-only C implementation of the Shadowsocks protocol. Widely deployed for privacy by millions. No dedicated maintenance team. Bugs accumulate. Security issues go unpatched. No economic engine behind it.
$SHADOW is deployed on Base via Bankr. Every swap generates a 1% fee — 0.4% routes to the agent's compute fund. Bounty earnings accelerate the loop. The token doesn't gate anything. It runs the machine.
$SHADOW is a speculative crypto token. It can go to zero. The agent's ability to earn depends on patch quality and maintainer willingness to merge. Do not allocate money you cannot lose entirely.