Skip to content

Commit 02ae60c

Browse files
committed
Rebases readme off main
2 parents 5375a5e + fb0c162 commit 02ae60c

File tree

2 files changed

+1478
-142
lines changed

2 files changed

+1478
-142
lines changed

.github/README.md

Lines changed: 62 additions & 55 deletions
Original file line numberDiff line numberDiff line change
@@ -4,8 +4,7 @@
44
</a>
55
<br><br>
66
<i>A compiled list of companies who accept responsible disclosure</i><br>
7-
<a align="center" href="https://bug-bounties.as93.net">🔎 <b>Browse All Programs</b></a> |
8-
<a align="center" href="https://github.com/Lissy93/bug-bounties/issues/new?template=add.yml">➕ <b>Submit New Program</b><br></a>
7+
<a align="center" href="https://bug-bounties.as93.net">🌐 <b>bug-bounties.as93.net</b><br></a>
98
</p>
109

1110
<br>
@@ -15,10 +14,7 @@
1514
## Top Programs
1615

1716
<!-- bounties-start -->
18-
<details>
19-
<summary><b>Expand List</b></summary>
20-
<sub><b>Key:</b> 💰 = bounty. 🏅 = shout-out. 🎁 = swag.<br>View full list and details at <a href="https://bug-bounties.as93.net/">bug-bounties.as93.net</a></sub>
21-
<details open><summary><h4>A</h4></summary>
17+
<details><summary>A (106)</summary>
2218

2319
- <img src='https://icon.horse/icon/www.abnamro.nl' width='16'/> [Abn Amro](https://www.abnamro.nl/en/personal/overabnamro/secure-banking/responsible-disclosure.html) 💰
2420
- <img src='https://icon.horse/icon/personal.rbs.co.uk' width='16'/> [ABNAMRO BANK](https://personal.rbs.co.uk/personal/fraud-and-security/responsible-disclosure.html) 🏅
@@ -128,7 +124,8 @@
128124
- <img src='https://icon.horse/icon/azimo.com' width='16'/> [Azimo](https://azimo.com/en/lp/responsible-disclosure) 💰
129125

130126
</details>
131-
<details open><summary><h4>B</h4></summary>
127+
128+
<details><summary>B (85)</summary>
132129

133130
- <img src='https://icon.horse/icon/www.backblaze.com' width='16'/> [Backblaze](https://www.backblaze.com/security.html) 💰
134131
- <img src='https://icon.horse/icon/corp.badoo.com' width='16'/> [Badoo](https://corp.badoo.com/security) 💰 🏅
@@ -217,7 +214,8 @@
217214
- <img src='https://icon.horse/icon/security.bytedance.com' width='16'/> [Bytedance](https://security.bytedance.com/media/score-standard/Vulnerability_Rewards_Program.pdf) 💰
218215

219216
</details>
220-
<details open><summary><h4>C</h4></summary>
217+
218+
<details><summary>C (98)</summary>
221219

222220
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Caffeine](https://bugcrowd.com/caffeine) 💰
223221
- <img src='https://icon.horse/icon/www.campaignmonitor.com' width='16'/> [Campaign Monitor](https://www.campaignmonitor.com/trust/report-a-vulnerability/) 💰
@@ -319,7 +317,8 @@
319317
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Cybrary](https://bugcrowd.com/cybrary) 🏅
320318

321319
</details>
322-
<details open><summary><h4>D</h4></summary>
320+
321+
<details><summary>D (71)</summary>
323322

324323
- <img src='https://icon.horse/icon/d66.nl' width='16'/> [D66](https://d66.nl/responsible-disclosure/) 💰
325324
- <img src='https://icon.horse/icon/yeswehack.com' width='16'/> [Dailymotion](https://yeswehack.com/programs/dailymotion-public-bug-bounty) 💰
@@ -394,7 +393,8 @@
394393
- <img src='https://icon.horse/icon/dyson.com' width='16'/> [Dyson](http://dyson.com) 💰
395394

396395
</details>
397-
<details open><summary><h4>E</h4></summary>
396+
397+
<details><summary>E (50)</summary>
398398

399399
- <img src='https://icon.horse/icon/www.earlywarning.com' width='16'/> [Early Warning](https://www.earlywarning.com/responsible-disclosure-program) 💰
400400
- <img src='https://icon.horse/icon/www.easyname.de' width='16'/> [Easyname](https://www.easyname.de/de/support/easyname/253-bug-bounty-programm) 💰
@@ -448,7 +448,8 @@
448448
- <img src='https://icon.horse/icon/yeswehack.com' width='16'/> [Ezviz - Bug Bounty Program](https://yeswehack.com/programs/ezviz-bug-bounty-program) 💰
449449

450450
</details>
451-
<details open><summary><h4>F</h4></summary>
451+
452+
<details><summary>F (52)</summary>
452453

453454
- <img src='https://icon.horse/icon/www.f-secure.com' width='16'/> [F Secure](https://www.f-secure.com/en/business/programs/vulnerability-reward-program) 💰
454455
- <img src='https://icon.horse/icon/support.f5.com' width='16'/> [F5 Networks](https://support.f5.com/csp/article/K4602) 💰
@@ -504,7 +505,8 @@
504505
- <img src='https://icon.horse/icon/www.fusion.org' width='16'/> [FUSION](https://www.fusion.org/developers/bug-bounty#bugs) 💰 🏅
505506

506507
</details>
507-
<details open><summary><h4>G</h4></summary>
508+
509+
<details><summary>G (36)</summary>
508510

509511
- <img src='https://icon.horse/icon/g.co' width='16'/> [g.cn](https://g.co/vrp) 💰
510512
- <img src='https://icon.horse/icon/www.gamma.nl' width='16'/> [Gamma](https://www.gamma.nl/klantenservice/veiligheid-privacy/responsible-disclosure) 💰 🏅
@@ -544,7 +546,8 @@
544546
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Gusto](https://bugcrowd.com/gusto) 💰 🏅
545547

546548
</details>
547-
<details open><summary><h4>H</h4></summary>
549+
550+
<details><summary>H (43)</summary>
548551

549552
- <img src='https://icon.horse/icon/www2.hm.com' width='16'/> [H&M Group](https://www2.hm.com/security.txt) 💰
550553
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Hack Me!](https://bugcrowd.com/hackme) 🏅
@@ -591,7 +594,8 @@
591594
- <img src='https://icon.horse/icon/www.hypr.com' width='16'/> [HYPR](https://www.hypr.com) 💰
592595

593596
</details>
594-
<details open><summary><h4>I</h4></summary>
597+
598+
<details><summary>I (53)</summary>
595599

596600
- <img src='https://icon.horse/icon/www.ibm.com' width='16'/> [IBM](https://www.ibm.com/security/secure-engineering/report.html) 🏅
597601
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Ibotta](https://bugcrowd.com/ibotta) 💰
@@ -648,7 +652,8 @@
648652
- <img src='https://icon.horse/icon/www.ivanti.com' width='16'/> [Ivanti](https://www.ivanti.com/support/contact-security) 🎁
649653

650654
</details>
651-
<details open><summary><h4>J</h4></summary>
655+
656+
<details><summary>J (15)</summary>
652657

653658
- <img src='https://icon.horse/icon/www.jamieweb.net' width='16'/> [Jamieweb](https://www.jamieweb.net/contact/) 🏅
654659
- <img src='https://icon.horse/icon/www.jazznetworks.com' width='16'/> [Jazz Networks](https://www.jazznetworks.com/security/) 🏅
@@ -667,7 +672,8 @@
667672
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Just Eat Takeaway.com](https://bugcrowd.com/justeattakeaway) 💰
668673

669674
</details>
670-
<details open><summary><h4>K</h4></summary>
675+
676+
<details><summary>K (30)</summary>
671677

672678
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [K15t](https://bugcrowd.com/engagements/k15t) 💰
673679
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Kaleido](https://bugcrowd.com/kaleido) 💰
@@ -701,7 +707,8 @@
701707
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [KuCoin Managed Bug Bounty Program](https://bugcrowd.com/engagements/kucoin) 💰
702708

703709
</details>
704-
<details open><summary><h4>L</h4></summary>
710+
711+
<details><summary>L (40)</summary>
705712

706713
- <img src='https://icon.horse/icon/www.intigriti.com' width='16'/> [Lansweeper](https://www.intigriti.com/programs/lansweeper/lansweeper1/detail) 💰
707714
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Larksuite](https://hackerone.com/lark_technologies) 💰
@@ -745,7 +752,8 @@
745752
- <img src='https://icon.horse/icon/www.lyft.com' width='16'/> [Lyft](https://www.lyft.com/security) 💰
746753

747754
</details>
748-
<details open><summary><h4>M</h4></summary>
755+
756+
<details><summary>M (74)</summary>
749757

750758
- <img src='https://icon.horse/icon/www.m-pesa.africa' width='16'/> [M-Pesa Africa Limited](https://www.m-pesa.africa) 💰
751759
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Magento](https://hackerone.com/magento) 💰 🏅
@@ -823,7 +831,8 @@
823831
- <img src='https://icon.horse/icon/www.maddysoft.com' width='16'/> [MyStuff2 App](https://www.maddysoft.com/iphone/mystuff/bounty.php) 🎁 🏅
824832

825833
</details>
826-
<details open><summary><h4>N</h4></summary>
834+
835+
<details><summary>N (51)</summary>
827836

828837
- <img src='https://icon.horse/icon/n26.com' width='16'/> [N26](https://n26.com/en-eu/bug-bounty-program) 💰
829838
- <img src='https://icon.horse/icon/support.narkasa.com' width='16'/> [Narkasa](https://support.narkasa.com/hc/en-us/articles/360011019458-Bug-Bounty) 💰
@@ -878,7 +887,8 @@
878887
- <img src='https://icon.horse/icon/www.nykaa.com' width='16'/> [Nykaa](https://www.nykaa.com/responsible-disclosure) 🏅
879888

880889
</details>
881-
<details open><summary><h4>O</h4></summary>
890+
891+
<details><summary>O (61)</summary>
882892

883893
- <img src='https://icon.horse/icon/observu.com' width='16'/> [Observu](https://observu.com/security.php) 🏅
884894
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Octopus](https://bugcrowd.com/octopus-og) 💰 🏅
@@ -943,7 +953,8 @@
943953
- <img src='https://icon.horse/icon/yeswehack.com' width='16'/> [OX App Suite](https://yeswehack.com/programs/app-suite) 💰
944954

945955
</details>
946-
<details open><summary><h4>P</h4></summary>
956+
957+
<details><summary>P (67)</summary>
947958

948959
- <img src='https://icon.horse/icon/yeswehack.com' width='16'/> [Paddle.com Public Bug Bounty Program](https://yeswehack.com/programs/paddle-com-public-bug-bounty-program) 💰
949960
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Paddy Power Betfair](https://hackerone.com/flutteruki) 💰
@@ -1014,7 +1025,8 @@
10141025
- <img src='https://icon.horse/icon/www.python.org' width='16'/> [Python](https://www.python.org/news/security/) 💰 🏅
10151026

10161027
</details>
1017-
<details open><summary><h4>Q</h4></summary>
1028+
1029+
<details><summary>Q (10)</summary>
10181030

10191031
- <img src='https://icon.horse/icon/www.qiwi.ru' width='16'/> [Qiwi](https://www.qiwi.ru/page/hack.action) 💰
10201032
- <img src='https://icon.horse/icon/cr.yp.to' width='16'/> [Qmail](https://cr.yp.to/qmail/guarantee.html) 💰
@@ -1028,7 +1040,8 @@
10281040
- <img src='https://icon.horse/icon/yeswehack.com' width='16'/> [QWANT](https://yeswehack.com/programs/qwant) 💰 🏅
10291041

10301042
</details>
1031-
<details open><summary><h4>R</h4></summary>
1043+
1044+
<details><summary>R (47)</summary>
10321045

10331046
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Rabobank](https://hackerone.com/rabobank) 💰
10341047
- <img src='https://icon.horse/icon/www.rackspace.com' width='16'/> [Rackspace](https://www.rackspace.com/information/legal/rsdp) 🏅
@@ -1079,7 +1092,8 @@
10791092
- <img src='https://icon.horse/icon/rupiahtoken.com' width='16'/> [RupiahToken](https://rupiahtoken.com/blog/bug-bounty-program) 💰
10801093

10811094
</details>
1082-
<details open><summary><h4>S</h4></summary>
1095+
1096+
<details><summary>S (135)</summary>
10831097

10841098
- <img src='https://icon.horse/icon/www.s-pankki.fi' width='16'/> [S-Pankki](https://www.s-pankki.fi) 💰
10851099
- <img src='https://icon.horse/icon/www.sailthru.com' width='16'/> [Sailthru](https://www.sailthru.com/trust/report-a-vulnerability/) 💰
@@ -1218,7 +1232,8 @@
12181232
- <img src='https://icon.horse/icon/docs.szns.io' width='16'/> [szns](https://docs.szns.io/smart-contracts/bug-bounty) 💰
12191233

12201234
</details>
1221-
<details open><summary><h4>T</h4></summary>
1235+
1236+
<details><summary>T (86)</summary>
12221237

12231238
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [T-Mobile](https://bugcrowd.com/t-mobile) 💰
12241239
- <img src='https://icon.horse/icon/www.t-mobile.cz' width='16'/> [T-Mobile CZ](https://www.t-mobile.cz/bug-bounty) 💰
@@ -1308,7 +1323,8 @@
13081323
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [tZERO](https://bugcrowd.com/tzero-vdp) 🏅
13091324

13101325
</details>
1311-
<details open><summary><h4>U</h4></summary>
1326+
1327+
<details><summary>U (31)</summary>
13121328

13131329
- <img src='https://icon.horse/icon/ui.com' width='16'/> [Ubiquiti](https://ui.com) 💰 🎁
13141330
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Ubiquiti Networks](https://hackerone.com/ui) 💰 🏅
@@ -1343,7 +1359,8 @@
13431359
- <img src='https://icon.horse/icon/www.intigriti.com' width='16'/> [UZ Leuven](https://www.intigriti.com/programs/uz%20leuven/uzleuven/detail) 💰
13441360

13451361
</details>
1346-
<details open><summary><h4>V</h4></summary>
1362+
1363+
<details><summary>V (36)</summary>
13471364

13481365
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Valve Software](https://hackerone.com/valve) 💰
13491366
- <img src='https://icon.horse/icon/www.intigriti.com' width='16'/> [Venly](https://www.intigriti.com/programs/arkane/arkanenetwork/detail) 💰
@@ -1383,7 +1400,8 @@
13831400
- <img src='https://icon.horse/icon/help.vyond.com' width='16'/> [Vyond](https://help.vyond.com/hc/en-us/articles/360000497723-How-do-I-Report-a-Security-Vulnerability-) 🏅
13841401

13851402
</details>
1386-
<details open><summary><h4>W</h4></summary>
1403+
1404+
<details><summary>W (35)</summary>
13871405

13881406
- <img src='https://icon.horse/icon/wagwalking.com' width='16'/> [Wagwalking](https://wagwalking.com/responsible-disclosure) 💰 🏅 🎁
13891407
- <img src='https://icon.horse/icon/www.walla.co.il' width='16'/> [Walla! Communication](https://www.walla.co.il/.well-know/security.txt) 💰
@@ -1422,7 +1440,8 @@
14221440
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Wyze Bug Bounty](https://bugcrowd.com/engagements/wyze) 💰
14231441

14241442
</details>
1425-
<details open><summary><h4>X</h4></summary>
1443+
1444+
<details><summary>X (6)</summary>
14261445

14271446
- <img src='https://icon.horse/icon/x.com' width='16'/> [X / xAI](https://x.com) 💰 🎁
14281447
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Xfinity Home & xFi](https://bugcrowd.com/xfinity-home) 💰
@@ -1432,7 +1451,8 @@
14321451
- <img src='https://icon.horse/icon/www.xvideos.com' width='16'/> [XVIDEOS](https://www.xvideos.com) 💰
14331452

14341453
</details>
1435-
<details open><summary><h4>Y</h4></summary>
1454+
1455+
<details><summary>Y (11)</summary>
14361456

14371457
- <img src='https://icon.horse/icon/app.intigriti.com' width='16'/> [Yahoo!](https://app.intigriti.com/programs/yahoo/yahoobugbounty/detail) 💰
14381458
- <img src='https://icon.horse/icon/technet.microsoft.com' width='16'/> [Yammer](https://technet.microsoft.com/en-us/security/dn800983) 💰
@@ -1447,7 +1467,8 @@
14471467
- <img src='https://icon.horse/icon/hackerone.com' width='16'/> [Yuga Labs](https://hackerone.com/yuga_labs) 💰
14481468

14491469
</details>
1450-
<details open><summary><h4>Z</h4></summary>
1470+
1471+
<details><summary>Z (21)</summary>
14511472

14521473
- <img src='https://icon.horse/icon/zabbix.com' width='16'/> [Zabbix](https://zabbix.com) 💰 🎁
14531474
- <img src='https://icon.horse/icon/www.zaful.com' width='16'/> [Zaful](https://www.zaful.com/report-security-issues) 💰
@@ -1472,7 +1493,8 @@
14721493
- <img src='https://icon.horse/icon/bugcrowd.com' width='16'/> [Zynga Whitehat](https://bugcrowd.com/zynga-vdp) 🏅
14731494

14741495
</details>
1475-
<details open><summary><h4>#</h4></summary>
1496+
1497+
<details><summary># (16)</summary>
14761498

14771499
- <img src='https://icon.horse/icon/registry.internetnz.nz' width='16'/> [.nz Registry](https://registry.internetnz.nz/about/vulnerability-disclosure-policy/) 🏅
14781500
- <img src='https://icon.horse/icon/docs.0x.org' width='16'/> [0x](https://docs.0x.org/developer-resources/bounties) 💰
@@ -1491,7 +1513,6 @@
14911513
- <img src='https://icon.horse/icon/www.98point6.com' width='16'/> [98 Point 6](https://www.98point6.com/responsible-disclosure-policy/) 🏅
14921514
- <img src='https://icon.horse/icon/www.98point6.com' width='16'/> [98point6](https://www.98point6.com/responsible-disclosure-policy/) 🏅
14931515

1494-
</details>
14951516
</details>
14961517

14971518
<!-- bounties-end -->
@@ -1511,29 +1532,23 @@ graph LR
15111532
A[Public Sources] -->|fetch| B[Normalize & Dedup]
15121533
B --> C[Validate]
15131534
C --> D[platform-programs.yml]
1514-
G[Community Submissions] -->|issue form| H[independent-programs.yml]
15151535
D --> E[README]
1516-
H --> E
15171536
D --> F[Website]
1518-
H --> F
15191537
15201538
style A fill:#4a90d9,stroke:#3a7bc8,color:#fff
15211539
style B fill:#7c5cbf,stroke:#6b4aab,color:#fff
15221540
style C fill:#e67e22,stroke:#d35400,color:#fff
15231541
style D fill:#27ae60,stroke:#1e8449,color:#fff
15241542
style E fill:#3498db,stroke:#2980b9,color:#fff
15251543
style F fill:#3498db,stroke:#2980b9,color:#fff
1526-
style G fill:#4a90d9,stroke:#3a7bc8,color:#fff
1527-
style H fill:#27ae60,stroke:#1e8449,color:#fff
15281544
```
15291545

15301546
---
15311547

15321548

15331549
## Submitting a Program
15341550

1535-
To include a new self-managed CVD or bug bounty program to the website, add it to [`independent-programs.yml`](https://github.com/Lissy93/bug-bounties/blob/main/independent-programs.yml) (in alphabetical order by company name).
1536-
Either, fork the repo add you entry(s) and then open a PR, or just [fill in this form](https://github.com/Lissy93/bug-bounties/issues/new?template=add.yml), and we will add it for you.
1551+
To include a new self-managed CVD or bug bounty program to the website, add it to [`independent-programs.yml`](https://github.com/Lissy93/bug-bounties/blob/main/independent-programs.yml) (in alphabetical order by company name). To get started, fork the repo, add you entry(s) and then open a PR.
15371552

15381553
<details><summary><b>Fields reference</b></summary>
15391554

@@ -1635,37 +1650,30 @@ Required fields are `company` and `url`, all others are optional
16351650
16361651
Start by clone the repo with `git clone git@github.com:Lissy93/bug-bounties.git && cd bug-bounties`
16371652

1638-
#### Data Aggregation
1653+
Then
16391654
1. `make install` - Setup environment and install dependencies (from [`requirements.txt`](https://github.com/Lissy93/bug-bounties/blob/main/lib/requirements.txt))
16401655
2. `make populate` - Fetch the latest directory of programs, format, and write to `platform-programs.yml`
16411656
3. `make validate` - Verify and validate [`platform-programs.yml`](https://github.com/Lissy93/bug-bounties/blob/main/platform-programs.yml) and [`independent-programs.yml`](https://github.com/Lissy93/bug-bounties/blob/main/independent-programs.yml) against the [`schema.json`](https://github.com/Lissy93/bug-bounties/blob/main/lib/schema.json)
16421657
4. `make readme` - Generate and insert a summarized list of programs into the [`README.md`](https://github.com/Lissy93/bug-bounties/blob/main/.github/README.md)
16431658

1644-
#### Website
1659+
For the website,
16451660
1. `cd web` to navigate into the [`web/`](https://github.com/Lissy93/bug-bounties/tree/main/web) directory
16461661
2. `npm i` to install dependencies
16471662
3. `npm run dev` to start the development server
16481663
4. `npm run build` to build the production site
16491664

1650-
#### Deployment
1651-
- Option 1) Upload the content of `web/dist/` into any web server, static hosting provider or CDN
1652-
- Option 2) Import the project into Vercel or Netlify directly, where it will be automatically deployed
1653-
- Option 3) For Docker, run `docker run -p 8080:8080 ghcr.io/lissy93/bug-bounties:latest`
1665+
To deploy the website, either:
1666+
- upload the content of `web/dist/` into any web server, static hosting provider or CDN.
1667+
- Or, import the project into Vercel, Netlify or a provider of your choice, where it will built and deployed
16541668

16551669
Alternatively, all the above tasks can be run directly using GitHub Actions. Simply fork the project, and trigger the workflow(s).
16561670

16571671
---
16581672

1659-
## Mirror
1660-
1661-
A mirror of this repo and all data is published to CodeBerg, at: **[codeberg.org/alicia/bug-bounties](https://codeberg.org/alicia/bug-bounties)**
1662-
1663-
---
1664-
16651673
## Credits
16661674

1667-
### Sponsors
1668-
Huge thanks to the following kind people, for their ongoing support in funding this, and other of my projects via [GitHub Sponsors](https://github.com/sponsors/lissy93)
1675+
### Supporters
1676+
Huge thanks to the following kind people, for their ongoing support in funding this, and other of my projects via GitHub Sponsors
16691677

16701678
[![Sponsors](https://readme-contribs.as93.net/sponsors/lissy93?shape=squircle&textColor=666666)](https://github.com/sponsors/Lissy93)
16711679

@@ -1744,4 +1752,3 @@ SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
17441752
|_____| |_____| ~ - . _ _~_-_
17451753
-->
17461754
1747-

0 commit comments

Comments
 (0)