[Eco Bounty]QS Allows Purchase with Invalid/Empty Name (e.g., " . ") – Poor Input Validation

Summary:
The billing/purchase flow permits transactions with clearly invalid names such as " . " (dot or space-dot), bypassing basic input validation. This could lead to issues with order processing, emails, or account linking.

Steps to Reproduce:

  1. Navigate to purchase flow (e.g., Quicksilver credits or subscription).

  2. Enter an invalid name like " . " (single space-dot or dot only) in the name field.

  3. Complete the purchase process.

  4. Observe: Purchase goes through successfully (email confirmation sent, etc.), despite invalid input.

Expected Behavior:

  • Reject invalid names (e.g., too short, only punctuation/spaces).

  • Prompt user for a valid name (e.g., minimum 12 characters, letters only).

  • Prevent submission until fixed.

Actual Behavior:

  • Invalid name like " . " is accepted.

  • Purchase processes normally (e.g., credits may/may not reflect, but order confirms).

Wallet Address: io1tkw393kejmxwnd454twc6020sxcyvh5dxqmren

Device & Environment:

-Operating system: Android 13

-Device model: Redmi Note 10 Pro

Please authenticate to join the conversation.

Upvoters
Status

In Review

Board
💡

New Issue

Date

23 days ago

Author

cryptotestnet

Subscribe to post

Get notified by email when there are changes.