C-SINT

C-SINT

Bug BountyActiveBounty

Program Details

Help secure the csint.pro intelligence platform and earn rewards for high‑quality.For best results, start with the official vulnerability report template linked below, then email it as an attachment - https://www.csint.pro/bugbounty/assets/security_vulnerability_report_template.pdf

Response SLA
2 business days

Rules & Testing

Excluded Methods

DosSocial EngineeringPhishingPhysical Access

Scope (4 targets)

  • *.csint.pro web
  • authentication, dashboard, OSINT search, subscriptions, user settings main web app
  • /login, /register, /dashboard, /api/*, /admin/* endpoints
  • application servers, load balancers, CDN config, databases, TLS and security headers Infrastructure we control

Out of Scope

Third‑party processors, analytics, email providers, CDN infrastructure not configured by csint.pro., Hosting provider, ISP, registrar, certificate authority, or any systems not owned by csint.pro., Physical testing, social engineering against users, or harassment of staff or customers., DoS/DDoS, resource exhaustion, data destruction, or any service disruption., Persistent backdoors, malware, credential harvesting, or pivoting to internal networks.