Alaan
Top 1M siteHybridActiveBounty RecognitionFull Safe Harbor
Program Details
Please provide detailed reports with reproducible steps. If the report is not detailed enough to reproduce the issue, the issue will not be eligible for a reward. Submit one vulnerability per report unless you need to chain vulnerabilities to provide impact. Do not run any automated scans against Alaan targets. When duplicates occur, we award only the first report received (provided it can be fully reproduced). Ask the Alaan team before submitting vulnerabilities on unscoped subdomains Only int
- Allows Disclosure
- No
Rules & Testing
Excluded Methods
DosSocial EngineeringPhishingPhysical AccessAutomated Scanning
In-Scope Domains
- https://www.alaan.com/
- https://app.alaanpay.com/
- Android app - https://play.google.com/store/search?q=alaan&c=apps
- ios app - https://apps.apple.com/in/app/alaan/id1605833078