Skip to content
Open
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
Expand Up @@ -44,6 +44,16 @@ This process applies to any repositories within the Express ecosystem.
If you are unsure whether a repository falls under this policy,
feel free to reach out via email.

### Reporting via Bug Bounty (YesWeHack)

If you wish to receive a financial reward for your security report, you may submit your findings through our official bug bounty program, hosted on YesWeHack.

This program is supported by the [Sovereign Tech Resilience Program](https://www.sovereigntechfund.de/programs/bug-resilience) and offers rewards for qualifying vulnerabilities found in the Express core packages.
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Name / URL to update


For scope, rules, and submission instructions, visit:
➡️ [Express Bug Bounty Program on YesWeHack](https://yeswehack.com/business-units/sovereign-tech-fund/programs/express-js-bug-bounty-program/details)


### Reporting via Email

If you prefer, you can also report security issues by emailing `express-security@lists.openjsf.org`.
Expand Down