Bug Bounty Program

Help Us Stay Secure

We value the security research community. Report valid security vulnerabilities and receive one year of free Pro account access.

Reward

1 Year Pro Account Access

For each valid and unique bug identified, you will receive one full year of access to our Pro account, completely free.

What We Are Looking For

We are interested in security vulnerabilities that could impact our users or platform

In Scope
  • • Authentication and authorization flaws
  • • Cross-site scripting (XSS)
  • • Cross-site request forgery (CSRF)
  • • SQL injection
  • • Remote code execution
  • • Server-side request forgery (SSRF)
  • • Sensitive data exposure
  • • Business logic vulnerabilities
Out of Scope
  • • Denial of service attacks
  • • Social engineering
  • • Physical security issues
  • • Issues in third-party services
  • • Spam or rate limiting issues
  • • Missing security headers without exploit
  • • Vulnerabilities requiring physical access
  • • Previously reported issues

Reporting Guidelines

Please follow these guidelines when reporting security issues

Be Responsible

Do not access, modify, or delete data that does not belong to you. Test only with your own accounts.

Provide Details

Include clear steps to reproduce the issue, along with screenshots or videos if possible.

Wait for Response

Allow us reasonable time to investigate and fix the issue before disclosing it publicly.

How to Report

Send your bug report to our security team with a detailed description of the vulnerability, steps to reproduce, and any supporting evidence.

We will acknowledge receipt within 48 hours and provide updates as we investigate your report.

Ready to Get Started?

Create an account to start testing, or explore our platform to understand how it works.