Skip to content

Starnum.com.tw Security Program #51

@adityaax

Description

@adityaax

Company

Starnum.com.tw

Program URL

https://www.instagram.com/mychenan/

Contact

https://www.instagram.com/mychenan/

Rewards

  • *bounty
  • *recognition
  • *swag

Program type

vdp

Status

active

Description

starnum.com.tw values the security of user data and the website. We welcome security researchers to report potential vulnerabilities through responsible disclosure, and we commit to responding openly, respectfully, and promptly.

Domains

*.starnum.com.tw

Structured scope

*.starnum.com.tw | web
Cloudflare Workers (API endpoints)
Frontend HTML/JS/CSS (XSS, content injection)
Supabase backend data access control
Authentication and authorization flows

Out of scope

Third-party services (Cloudflare infrastructure itself
Google Analytics, Supabase platform itself)
Social engineering attacks
Physical security

Minimum payout

No response

Maximum payout

No response

Currency

No response

Payout - critical

No response

Payout - high

No response

Payout - medium

No response

Payout - low

No response

Testing policy URL

No response

Excluded methods

  • dos
  • social_engineering
  • phishing
  • physical_access
  • automated_scanning

Requires account

None

Safe harbor

None

Allows disclosure

None

Disclosure timeline days

No response

Response SLA days

No response

Legal terms URL

No response

Hall of fame URL

No response

Swag details

No response

Reporting URL

Instagram DM: https://www.instagram.com/mychenan/

PGP key URL

No response

Preferred languages

No response

Standards


Confirmation

  • I confirm the information is accurate and I have included only publicly documented program details.

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions