Company
Date Published
Author
Bugcrowd
Word count
435
Language
English
Hacker News points
None

Summary

Jet.com takes security seriously and has been running a successful bug bounty program for more than two years, rewarding 171 security vulnerabilities through its partnership with Bugcrowd. The company has increased rewards for mobile vulnerabilities to attract top security talent and encourage researchers to identify critical issues early. By adding a 25% incentive for mobile targets, Jet.com aims to create a competitive scope and reward model that benefits both the organization and the security research community. This approach is part of a broader trend in vulnerability pricing, where companies are initially launching private programs, taking them public, and increasing rewards to attract top talent and demonstrate their commitment to the security research community.