Discover and contribute to various bug bounty programs on different platforms.
Program Title | Platform | Description | URL |
---|---|---|---|
DataDome Bug Bounty | YesWeHack | https://app.datadome.co, https://customer-api.datadome.co, https://api.datadome.co, https://api-js.datadome.co, https://*.captcha-delivery.com, https://auth.datadome.co, https://datadome.co, https://bot-tester.datadome.co/, https://play.google.com/store/apps/details?id=co.datadome.app, https://apps.apple.com/fr/app/datadome/id1492490972 | None |
Deezer Bug Bounty Program | YesWeHack | www.deezer.com, connect.deezer.com, api.deezer.com, payment.deezer.com, Android Deezer App, iOS Deezer App | None |
Doctolib | YesWeHack | www.doctolib.(fr|de|it), pro.doctolib.(fr|de|it) (see "about freemium scope"), Special scenarios (see description), *.doctolib.(fr|de|it|com|net), https://apps.apple.com/fr/app/doctolib/id925339063, http://play.google.com/store/apps/details?id=fr.doctolib.www | None |
Dovecot | YesWeHack | Dovecot IMAP Server and Pigeonhole SIEVE (see "Software packages" and "Source code") | None |
EGERIE BUG BOUNTY | YesWeHack | https://saas.egerie.eu/*, https://saas.egerie.eu/v4/EgerieRM/api/* | None |
Echobox Bug Bounty Program | YesWeHack | https://login.echobox.dev/, http://stage.sl.echobox.dev/, http://stage.nl.echobox.dev/, https://socialapi-stage.service.echobox.com/v3/serviceauth, https://campaignapi-stage.service.echobox.com/v3/serviceauth, https://github.com/ebx/ebx-clientauth-backend-sdk, https://github.com/ebx/ebx-serviceauth-sdk, https://coreapi-stage.service.echobox.com (aka https://properties.service.echobox.com), https://socialapi-stage.service.echobox.com, https://campaignapi-stage.service.echobox.com, https://stage.emailreporting.service.echobox.com/ | None |
Ezviz - Bug Bounty Program | YesWeHack | Hardware found on https://www.ezviz.com/category/security-wifi-cameras, Hardware found on https://www.ezviz.com/category/smart-home | None |
FranceConnect+ / AgentConnect | YesWeHack | https://auth.integ01.dev-franceconnect.fr, https://fca.integ01.dev-agentconnect.fr, https://eidas-bridge.integ01.dev-franceconnect.fr | None |
Harman International Lifestyle JBL | YesWeHack | Device: JBL Bar 300, Device: JBL Bar 500, Device: JBL Bar 700, Device: JBL Bar 800, Device: JBL Bar 1000, Device: JBL Bar 1300, a1ttqkupgmaxeg-ats.iot.us-east-1.amazonaws.com, a1ttqkupgmaxeg-ats.iot.ap-east-1.amazonaws.com, lsaconsumerevents2.onecloud.harman.com, lsaconsumerevents3.onecloud.harman.com, lsaconsumerevents1.onecloud.harman.com, events.onecloud.harman.com, ota-staging.onecloud.harman.com, ota.onecloud.harman.com, apis.onecloud.harman.com, https://apps.apple.com/fr/app/jbl-one/id1610239857, https://play.google.com/store/apps/details?id=com.jbl.oneapp&hl=fr&gl=US | None |
Infomaniak Bug Bounty program | YesWeHack | *.kdrive.infomaniak.com, api.infomaniak.com, login.infomaniak.com, manager.infomaniak.com/v3/*, shop.infomaniak.com, *.kchat.infomaniak.com, calendar.infomaniak.com, contacts.infomaniak.com, etickets.infomaniak.com, mail.infomaniak.com, swiss-backup*.infomaniak.com, vod.infomaniak.com, *.vod2.infomaniak.com, player-radio.infomaniak.com, welcome.infomaniak.com, www.swisstransfer.com, www.infomaniak.com, *.infomaniak.site, infomaniak.events, sms.infomaniak.com, developer.infomaniak.com | None |