Public Bug-bounty

As part of our journey to SOC2 Compliance, we have now made our previously private bug-bounty hosted by https://bugcrowd.com/ public as of 11 JAN 2024.

This program enables white hat hackers out there to demonstrate security issues that are in scope for financial rewards!

Our Bug Bounty Program

Bug Bounty scope:

Atlassian systems are not in scope, this is primarily about our app deployed on an instance of Jira (DC or Cloud):

  • JEMH for Jira DC

  • JEMHC for Jira Cloud