Bug Bounties


Powered by: 

Allows bounty splitting: 

Average time to first program response: 

Average time to bounty awarded null: 

Average time to report resolved: 

Handle stagingdoteverydotorg

Managed program: false

Name: Staging.every.org

Offers bounties: false

Offers swag: false

Response efficiency percentage: 100

Submission state: open

Url: https://hackerone.com/stagingdoteverydotorg

Website: https://staging.every.org

In scope:

  • Asset identifier: staging.every.org
  • Asset type: URL
  • Availability requirement: low
  • Confidentiality requirement: high
  • Eligible for bounty: 
  • Eligible for submissions: true
  • Instruction: Please create all accounts at https://staging.every.org!! We have it configured just like the real every.org so any vulnerabilities you find will be valid :) staging.every.org is protected with HTTP Basic Auth to prevent crawlers from indexing it. The credentials are as follows. Username: `give` Password: `give`
  • Integrity requirements: high
  • Max severity: critical