Public Bug-bounty

Public Bug-bounty

As part of our journey to SOC2 Compliance, we have now made our previously private bug-bounty hosted by https://bugcrowd.com/ public as of 11 JAN 2024.

This program enables white hat hackers out there to demonstrate security issues that are in scope for financial rewards!

Our Bug Bounty Program

  • Search for Plugin People on the BugCrowd program list

  • Go direct to https://bugcrowd.com/plugin-people

Bug Bounty scope:

Atlassian systems are not in scope, this is primarily about our app deployed on an instance of Jira (DC or Cloud):

  • JEMH for Jira DC

  • JEMHC for Jira Cloud