Bug Bounties

Krisp

Powered by: 

Allows bounty splitting: 

Average time to first program response: 9

Average time to bounty awarded null: 15

Average time to report resolved: 474

Handle krisp

Managed program: true

Name: Krisp

Offers bounties: true

Offers swag: false

Response efficiency percentage: 100

Submission state: open

Url: https://hackerone.com/krisp

Website: https://krisp.ai

In scope:

  • Asset identifier: *.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: except for OOS domains
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: Other
  • Asset type: OTHER
  • Availability requirement: 
  • Confidentiality requirement: 
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: Anything that is verified that belongs to us and doesn't match any other scope.
  • Integrity requirements: 
  • Max severity: critical



  • Asset identifier: https://account.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: consider testing on stage.account.krisp.ai rather than on the main one
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://analytics.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: consider testing on stage.analytics.krisp.ai rather than on the main one
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://api.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: consider testing on stage.api.krisp.ai rather than on the main one
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://contact.krisp.ai
  • Asset type: URL
  • Availability requirement: none
  • Confidentiality requirement: none
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: 
  • Integrity requirements: none
  • Max severity: none



  • Asset identifier: https://download.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: consider testing on stage.download.krisp.ai rather than on the main one
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://download.krisp.ai/mac
  • Asset type: DOWNLOADABLE_EXECUTABLES
  • Availability requirement: medium
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: bypassing free minutes limitation via changing frontend applications' logic is out of scope
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://download.krisp.ai/win
  • Asset type: DOWNLOADABLE_EXECUTABLES
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: bypassing free minutes limitation via changing frontend applications' logic is out of scope
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://help-jp.krisp.ai/
  • Asset type: URL
  • Availability requirement: none
  • Confidentiality requirement: none
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: Misconfigurations are in scope and may be awarded
  • Integrity requirements: low
  • Max severity: low



  • Asset identifier: https://help.krisp.ai
  • Asset type: URL
  • Availability requirement: low
  • Confidentiality requirement: low
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: Misconfigurations are in scope and may be awarded
  • Integrity requirements: low
  • Max severity: medium



  • Asset identifier: https://jobs.krisp.ai
  • Asset type: URL
  • Availability requirement: none
  • Confidentiality requirement: none
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: Misconfigurations are in scope and may be awarded
  • Integrity requirements: none
  • Max severity: none



  • Asset identifier: https://krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: 
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://resources.krisp.ai/
  • Asset type: URL
  • Availability requirement: none
  • Confidentiality requirement: none
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: Misconfigurations are in scope and may be awarded
  • Integrity requirements: none
  • Max severity: none



  • Asset identifier: https://teams.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: consider testing on stage.teams.krisp.ai rather than on the main one
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://upld.krisp.ai
  • Asset type: URL
  • Availability requirement: high
  • Confidentiality requirement: high
  • Eligible for bounty: true
  • Eligible for submissions: true
  • Instruction: consider testing on stage.upld.krisp.ai rather than on the main one
  • Integrity requirements: high
  • Max severity: critical



  • Asset identifier: https://url5145.krisp.ai
  • Asset type: URL
  • Availability requirement: none
  • Confidentiality requirement: none
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: 
  • Integrity requirements: none
  • Max severity: none



  • Asset identifier: https://whatsnew.krisp.ai
  • Asset type: URL
  • Availability requirement: medium
  • Confidentiality requirement: medium
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: Misconfigurations are in scope and may be awarded
  • Integrity requirements: medium
  • Max severity: critical