C-SINT
Bug BountyActiveBounty
Program Details
Help secure the csint.pro intelligence platform and earn rewards for high‑quality.For best results, start with the official vulnerability report template linked below, then email it as an attachment - https://www.csint.pro/bugbounty/assets/security_vulnerability_report_template.pdf
- Response SLA
- 2 business days
Rules & Testing
Excluded Methods
DosSocial EngineeringPhishingPhysical Access
Scope (4 targets)
- *.csint.pro web
- authentication, dashboard, OSINT search, subscriptions, user settings main web app
- /login, /register, /dashboard, /api/*, /admin/* endpoints
- application servers, load balancers, CDN config, databases, TLS and security headers Infrastructure we control
Out of Scope
Third‑party processors, analytics, email providers, CDN infrastructure not configured by csint.pro., Hosting provider, ISP, registrar, certificate authority, or any systems not owned by csint.pro., Physical testing, social engineering against users, or harassment of staff or customers., DoS/DDoS, resource exhaustion, data destruction, or any service disruption., Persistent backdoors, malware, credential harvesting, or pivoting to internal networks.