Responsible Disclosure Bug Bounty __hot__ 〈2026〉

This policy does not grant permission to hack or disrupt [Company Name] outside the described scope.

| Severity | Example Vulnerability Types | Bounty Range (USD) | |--------------|----------------------------------------------------|--------------------| | | RCE, SQLi with data extraction, privilege escalation | $1,000 – $5,000 | | High | SSRF to internal network, auth bypass, significant data leak | $500 – $1,000 | | Medium | CSRF on sensitive actions, stored XSS, IDOR on private data | $200 – $500 | | Low | Reflected XSS, limited info disclosure, rate-limiting issues | $50 – $200 | responsible disclosure bug bounty


How would you rate it?

Click or tap the score bar to select your rating. Your choice will be averaged with the other votes to calculate the AV Readers' Score.
responsible disclosure bug bounty1/102/103/104/105/106/107/108/109/1010/10responsible disclosure bug bounty

Readers' Score: 8.87 / 10