Skip to content

[Program]: atmail.com #82

@batamaji

Description

@batamaji

Company

atmail.com

Program URL

https://www.atmail.com/bug-bounty-terms/

Contact

security@atmail.com.

Description

Atmail is committed to protecting our customers and their users. As part of this commitment, we invite security researchers to help protect Atmail and its users by proactively identifying security vulnerabilities via our bug bounty program. Our program is inclusive of all Atmail brands and technologies and offers rewards for a wide array of vulnerabilities. We encourage security researchers looking to participate in our bug bounty program to review this policy to ensure compliance with our rules

Rewards

  • *bounty
  • *recognition
  • *swag

Program type

bounty

Status

active

Safe harbor

full

Allows disclosure

true

Domains

*.atmail.com, including www.atmail.com within the scope listed below. Excluding billing.atmail.com
*.atmail.cloud
All Atmail code shipped with it’s product, both source and binaries (in binary form) as supplied.
Only the latest versions of the currently shipped and supported products are in scope.
All Atmail Hosted services, both public and private cloud installations.
All Atmail supplied customer service portals, third-party components excluded.
www.atmail.com, limited to the contents being served from this website, and not third-party components that may present as accessible via this website.

Structured scope

No response

Out of scope

Any domain that is an alias (CNAME) for a third-party system, or is being proxied through a CDN such as Cloudflare directly to a third-party platform. e.g. billing.atmail.com, success.atmail.com, status.atmail.com.
All third party services associated with Atmail services.

Excluded methods

  • dos
  • social_engineering
  • phishing
  • physical_access
  • automated_scanning

Requires account

No response

Minimum payout

50

Maximum payout

5000

Currency

USD

Payout - critical

5000

Payout - high

2000

Payout - medium

500

Payout - low

48

Swag details

No response

Testing policy URL

No response

Response SLA days

No response

Disclosure timeline days

90

Legal terms URL

No response

Hall of fame URL

No response

Reporting URL

No response

PGP key URL

No response

Preferred languages

No response

Standards

No response

Confirmation

  • I confirm the information is accurate and I have included only publicly documented program details.

Metadata

Metadata

Assignees

No one assigned

    Labels

    submission-processedBot has parsed this submission and opened a PR

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions