Reward your researchers fairly – try our bug bounty calculator today!

Try our bug bounty calculator

Bug bounty programs

Below is a list of public bug bounty programs.

Through a bug bounty program, companies can tap into a global network of ethical hackers who continuously test a wide range of digital assets within the defined scope.

Bug bounty programs reward ethical hackers with financial incentives when valid vulnerabilities are discovered.

Industry

Program type

Sort by

Search

Posti Bug Bounty

Posti Bug Bounty

Transportation and Logistics

Posti is one of the leading delivery and fulfillment companies in Finland, Sweden and the Baltic countries, that offers a wide range of postal, logistics, freight and eCommerce services. Further information: https://www.posti.com/en/corporate/posti-business/our-services

Bug bounty program

T&C Required

View program

€100 – €2,000

Webnode

Webnode

Media and Entertainment

Webnode is an amazingly simple website builder. Launched in 2008, it has already helped over 50 million users create their own websites. Webnode has recently been acquired by the number one hosting company in Europe and therefore the product will be used and implemented throughout different brands in Europe.

Bug bounty program

2FA Required

Application Required

View program

€100 – €1,750

DHL Group Vulnerability Disclosure Program

DHL Group Vulnerability Disclosure Program

Transportation and Logistics

DHL Group is a global logistics company providing services in express delivery, freight transportation, supply chain management, e-commerce solutions, as well as postal and parcel services. As part of our commitment to security, we invite researchers to participate in our vulnerability disclosure program, helping us ensure protection of our systems. Join us in identifying and reporting potential vulnerabilities to maintain the highest standards of security for our customers and partners.

Responsible disclosure

Revolut VDP

Revolut VDP

Financial Services and Insurance

Revolut is a financial technology company that offers banking services. It offers accounts featuring currency exchange, debit cards, virtual cards, interest-bearing "vaults", commission-free stock trading, crypto, commodities, and other services to over 60M customers. Please visit our website for more information: www.revolut.com

Responsible disclosure

ING Responsible Disclosure

ING Responsible Disclosure

Financial Services and Insurance

Responsible Disclosure indicates ING’s continued commitment to improve its security posture. As part of this process, we work closely with security researchers to identify and report vulnerabilities they find within our systems. ING appreciates security researchers efforts in reporting vulnerabilities on its systems as long as the discovered vulnerability is in scope, detected without the use of intrusive testing techniques, and follows the disclosure guidelines below:

Responsible disclosure

Universitätsspital Zürich VDP

Universitätsspital Zürich VDP

Hospitals and Healthcare

VULNERABILITY DISCLOSURE PROGRAM (VDP) Above all else, University Hospital Zurich is committed to the care and improvement of human life. Part of that mission is to protect our patients, people, systems, and facilities. We want encourage security researchers to feel comfortable reporting vulnerabilities they’ve discovered to us in good faith.

Responsible disclosure

Social Deal

Social Deal

Leisure and Hospitality

Thank you for visiting our program, we are happy with ethical hackers who want to look have a into our security with an objective view. Social Deal is an online platform for consumers to buy the best deals in their region. With these deals they can discover restaurants/hotels/beauty/zoo and many other retailers for the best price. Social Deal is active in Netherlands, Belgium and Germany. Our customers trust our brand. We want to be sure the data is protected to keep our brand value high.

Bug bounty program

View program

€25 – €750

Axel Springer National Media & Tech

Axel Springer National Media & Tech

Media and Entertainment

AS National Media & Tech (NMT) is a subsidiary of Axel Springer SE, a leading international media company. We develop and operate digital products for Germany’s top news brands, reaching over 50 million users each month. At Axel Springer, we stand for free journalism and unrestricted access to information, allowing people to make free decisions. To protect this, the security of our platforms and users is our top priority. Your contributions help us keep them safe.

Bug bounty program

View program

€15 – €2,500

Ubisoft Responsible Disclosure Program

Ubisoft Responsible Disclosure Program

Media and Entertainment

Ubisoft’s Responsible Disclosure Program provides a safe, public channel for anyone to report security vulnerabilities in Ubisoft-owned, internet‑facing services, official applications and video games. The purpose of this program is to partner with the security community to identify and remediate issues before they can impact our players, employees, partners, or data. We encourage good‑faith, non‑disruptive research and clear, reproducible reports that demonstrate impact with the minimum necessary evidence. Please avoid actions that could affect availability, privacy, or other users, and use test accounts whenever possible. In return, our security team commits to prompt triage, transparent communication, and appropriate recognition in line with program policies. If you believe you’ve found a vulnerability, please submit it through Intigriti so we can investigate and fix it quickly—helping keep Ubisoft’s worlds safe and enjoyable for everyone.

Responsible disclosure

Yahoo Bug Bounty

Yahoo Bug Bounty

Media and Entertainment

Welcome to Yahoo Yahoo is a global media and advertising company connecting people to their passions. With one of the largest online audiences in the world, Yahoo brings people closer to what they love — from finance and commerce, to gaming and news — with the trusted products, content, and tech that fuel their day. For partners, we provide a full-stack platform to amplify businesses and drive more meaningful connections across advertising, search, and media.

Bug bounty program

View program

$100 – $15,000

Ninja Kiwi Games Bug Bounty program

Ninja Kiwi Games Bug Bounty program

Media and Entertainment

Creators of hit computer game franchises Bloons, Bloons TD and SAS: Zombie Assault for mobile and web. We have offices in Auckland, New Zealand and Dundee, Scotland. We are excited to engage with the security community to help us keep our users safe and our services secure. This is our second Bug Bounty program after a successful campaign in 2021.

Bug bounty program

View program

€75 – €4,125

Capital.com

Capital.com

Financial Services and Insurance

Capital.com is one of the world’s fastest-growing trading platforms – in fact, we were ranked as the fastest-growing company in the Middle East in the 2024 Deloitte Technology Fast 50. We serve our clients from offices across Europe, the UK, the Middle East and Australia. We keep our traders at the heart of every decision we make, facilitating their trading with intuitive technology, in-depth education and dedicated support. Our mission is to help traders make better decisions, by giving them the tools and resources they need to trade with confidence. It’s a mission that has won us multiple awards from leading industry authorities – like ‘Best Overall Trading Platform’ (Online Money Awards 2024) and ‘Best Trading App 2023’ (Good Money Guide) – and helped us gain an ‘excellent’ rating on Trustpilot.

Bug bounty program

View program

Up to €15,000

Wolt

Wolt

Leisure and Hospitality

We provide a platform for: - Businesses to sell products (like food, clothing and even electronics). - Customers to purchase such products and get them delivered by Wolt couriers. - Wolt couriers to receive and manage delivery requests. We have more than 30 million registered users and we operate in 20+ countries. Read more about us: https://wolt.com/en/about.

Bug bounty program

View program

€100 – €3,500

WP Engine Bug Bounty

WP Engine Bug Bounty

Media and Entertainment

Welcome! WP Engine invites you to evaluate our products and platforms. WP Engine equips its customers with a suite of agility, performance, intelligence, and integration solutions, so you can build and deploy a range of online experiences from campaign sites to content hubs to e-commerce extensions. Good luck and happy hunting!

Bug bounty program

View program

Up to €2,500

RIPE NCC

RIPE NCC

Non Profit

We're an independent, not-for-profit membership organisation that supports the infrastructure of the Internet through technical coordination in our service region. Our most prominent activity is to act as the Regional Internet Registry (RIR) providing global Internet resources and related services (IPv4, IPv6 and AS Number resources) to members in our service region.

Bug bounty program

View program

Up to €2,000

Housing Application (huisvestingsapp) Bug Bounty Program

Housing Application (huisvestingsapp) Bug Bounty Program

Education

At KU Leuven, we are committed to ensuring the integrity of our Housing Application Program. This program allows both new and returning students to apply for a room in KU Leuven Central Services Residences, helping them find the right accommodation. As with all our platforms, we recognize that vulnerabilities can exist, and we encourage researchers to report any security issues they may discover within this application. If you identify a vulnerability while using the application, please follow our disclosure guidelines to report it safely and responsibly. Your contributions help us maintain a secure and seamless experience for all students!

Bug bounty program

View program

Up to €2,000

TrueLayer

TrueLayer

Financial Services and Insurance

TrueLayer is opening up finance and changing the way the world pays. Empowering businesses in every industry to create first-class financial experiences for their customers. We build on top of the Open Banking and PSD2 standards to provide APIs for our customers to use to provide financial data and payment initiation services.

Bug bounty program

View program

€75 – €6,000

Voi Scooters

Voi Scooters

Leisure and Hospitality

Voi is europe's biggest micro-mobility operator based in Stockholm, Sweden. We manage a system of electrically powered scooters and bikes around urban centers. We provide an affordable, sustainable, and exhilarating way to commute while helping people to reduce their carbon footprint and cities to have a more sustainable transportation network. We are excited to work with and reward the community of security researchers to continuously improve our security position.

Bug bounty program

View program

Up to €3,500

WP Engine VDP

WP Engine VDP

Media and Entertainment

WP Engine invites you to test the WP Engine and Flywheel Digital Experience Platforms. WP Engine equips its customers with a suite of agility, performance, intelligence, and integration solutions, so you can build and deploy a range of online experiences from campaign sites to content hubs to e-commerce extensions. Good luck and happy hunting!

Responsible disclosure

PeopleCert VDP

PeopleCert VDP

Education

PeopleCert is the global leader in the assessment and certification of professional and language skills, partnering with multi-national organisations and government bodies to develop and deliver market leading exams worldwide. This policy is intended to give security researchers clear guidelines for conducting vulnerability discovery activities.

Responsible disclosure

Visma Responsible Disclosure

Visma Responsible Disclosure

Software

Visma delivers software that simplifies and digitizes core business processes in the private and public sector. With presence across the entire Nordic region along with Benelux, Central and Eastern Europe, we are one of Europe’s leading software companies. We want to engage with responsible security researchers around the globe to further secure our services. This program is dedicated for all Visma assets (services, products, web properties).

Sustainable

Responsible disclosure

Nestlé VDP

Nestlé VDP

Manufacturing Consumer

In Nestlé we believe in the power of food to enhance quality of life for everyone, today and for generations to come. IT Security is a top priority for us, we are committed to work with security researchers across the globe to help protect our systems and our customers' data from malicious activity and to further improve cyber security across our organization.

Responsible disclosure

Canada Post - Responsible Disclosure Program

Canada Post - Responsible Disclosure Program

Transportation and Logistics

Canada Post is the country’s leading provider of business-to-consumer delivery. Reaching more than 16.2 million addresses, and operating the country’s largest retail network of over 6,200 post offices.

Responsible disclosure

Intel®

Intel®

Manufacturing Consumer

Intel® Bug Bounty Program Intel Corporation believes that forging relationships with security researchers and fostering security research is a crucial part of our Security First Pledge. We encourage security researchers to work with us to mitigate and coordinate the disclosure of potential security vulnerabilities. By submitting your report, you agree to the terms of the Intel® Bug Bounty Program. Intel reserves the right to alter the terms and conditions of this program at its sole discretion.

Bug bounty program

View program

$250 – $100,000