Alasco GmbH - Bug Bounty Program
Top 1M siteProgram Details
- Handle
- alasco-gmbh-bug-bounty-program
Scope (4 targets)
web: 1 api: 1 other: 2 In Scope
- app.alasco.de web bounty-eligible
- api.alasco.de api bounty-eligible
- *.alasco.de other bounty-eligible
- *.alasco.rocks other bounty-eligible
Out of Scope
All other domains or subdomains not listed in the above list of 'Scopes'., explore.alasco.com, explore.alasco.de, www.alasco.de, www.alasco.com, alasco.de, alasco.com, lp.alasco.de, lp.alasco.com, support.alasco.de, support.alasco.com, Please note that all non-authenticated areas of our systems are in scope for this program. This means that any vulnerability discovered in a system or service that does not require a login to access is eligible for a reward., However, any vulnerability discovered in a system or service that requires a login to access is outside the scope of this program., Alasco will not provide access credentials to any system, not for testing and also not for issue validation., Attention: Third-party managed infrastructure (e.g. HubSpot, Salesforce, or other SaaS platforms) where Alasco has no ability to remediate vulnerabilities at the infrastructure or platform level, regardless of the subdomain.
Additional Info
- Sources
- yeswehack