asana
10
In Scope
6
Out of Scope
In-Scope Assets (10)
| Asset | Category | Bounty | Quick Links | |
|---|---|---|---|---|
| *.app.asana.com | URL | Yes | ||
| Subdomain takeover at *asana.biz | OTHER | Yes | - | |
| https://*.asana.biz | OTHER | Yes | - | |
| https://app.asana.com | URL | Yes | ||
| https://apps.apple.com/us/app/asana-mobile/id489969512 | IOS | Yes | - | |
| https://asana.com | URL | Yes | ||
| https://asana.com/apps?category=made-by-asana | URL | Yes | ||
| https://asana.com/download | OTHER | Yes | - | |
| https://form.asana.com | URL | Yes | ||
| https://play.google.com/store/apps/details?id=com.asana.app&hl=en | ANDROID | Yes |
Out-of-Scope Assets (6)
| Asset | Category | Bounty | |
|---|---|---|---|
| Forms that you do not own | OTHER | Yes | |
| Other subdomains of asana.com | URL | Yes | |
| Social engineering against Asana Support or Asana Employees | OTHER | Yes | |
| asana.okta.com | URL | Yes | |
| assets.asana.biz | URL | Yes | |
| jira*.integrations.asana.plus | URL | Yes |
Scope Changes (81)
Mar 5, 2026
| Change | Asset | Category | Scope | Time |
|---|---|---|---|---|
| Added | https://app.asana.com | URL | In Scope | 22:28 |
| Added | assets.asana.biz | URL | Out of Scope | 22:28 |
| Added | forms that you do not own | OTHER | Out of Scope | 22:28 |
| Added | https://form.asana.com | URL | In Scope | 22:28 |
| Added | *.asana.biz | WILDCARD | In Scope | 22:28 |
| Added | assets.asana.biz | URL | Out of Scope | 22:28 |
| Added | https://asana.com | URL | In Scope | 22:28 |
| Added | *.app.asana.com | WILDCARD | In Scope | 22:28 |
| Added | subdomain takeover at *asana.biz | WILDCARD | In Scope | 22:28 |
| Added | social engineering against asana support or asana employees | OTHER | Out of Scope | 22:28 |
| Added | jira*.integrations.asana.plus | URL | Out of Scope | 22:28 |
| Added | forms that you do not own | OTHER | Out of Scope | 22:28 |
| Added | https://asana.com/apps?category=made-by-asana | URL | In Scope | 22:28 |
| Added | https://asana.com/download | URL | In Scope | 22:28 |
| Added | https://apps.apple.com/us/app/asana-mobile/id489969512 | IOS | In Scope | 22:28 |
| Added | other subdomains of asana.com | URL | Out of Scope | 22:28 |
| Added | asana.okta.com | URL | Out of Scope | 22:28 |
| Added | https://play.google.com/store/apps/details?id=com.asana.app&hl=en | ANDROID | In Scope | 22:28 |
| Added | https://app.asana.com | URL | In Scope | 22:28 |
| Added | https://asana.com | URL | In Scope | 22:28 |
| Added | https://asana.com/apps?category=made-by-asana | URL | In Scope | 22:28 |
| Added | https://asana.com/download | OTHER | In Scope | 22:28 |
| Added | https://apps.apple.com/us/app/asana-mobile/id489969512 | IOS | In Scope | 22:28 |
| Added | https://play.google.com/store/apps/details?id=com.asana.app&hl=en | ANDROID | In Scope | 22:28 |
| Added | https://form.asana.com | URL | In Scope | 22:28 |
| Added | *.app.asana.com | URL | In Scope | 22:28 |
| Added | *.asana.biz | OTHER | In Scope | 22:28 |
| Added | subdomain takeover at *asana.biz | OTHER | In Scope | 22:28 |
| Added | other subdomains of asana.com | URL | Out of Scope | 22:28 |
| Added | social engineering against asana support or asana employees | OTHER | Out of Scope | 22:28 |
| Added | jira*.integrations.asana.plus | URL | Out of Scope | 22:28 |
| Added | asana.okta.com | URL | Out of Scope | 22:28 |
Feb 25, 2026
| Change | Asset | Category | Scope | Time |
|---|---|---|---|---|
| Added | other subdomains of asana.com | URL | Out of Scope | 19:11 |
| Added | jira*.integrations.asana.plus | URL | Out of Scope | 19:11 |
| Added | asana.okta.com | URL | Out of Scope | 19:11 |
| Added | https://asana.com/download | URL | In Scope | 19:11 |
| Added | *.app.asana.com | WILDCARD | In Scope | 19:11 |
| Added | *.asana.biz | WILDCARD | In Scope | 19:11 |
| Added | subdomain takeover at *asana.biz | WILDCARD | In Scope | 19:11 |
| Added | https://app.asana.com | URL | In Scope | 19:11 |
| Added | https://asana.com | URL | In Scope | 19:11 |
| Added | https://asana.com/apps?category=made-by-asana | URL | In Scope | 19:11 |
| Added | https://apps.apple.com/us/app/asana-mobile/id489969512 | IOS | In Scope | 19:11 |
| Added | https://form.asana.com | URL | In Scope | 19:11 |
| Added | assets.asana.biz | URL | Out of Scope | 19:11 |
| Added | forms that you do not own | OTHER | Out of Scope | 19:11 |
| Added | https://play.google.com/store/apps/details?id=com.asana.app&hl=en | ANDROID | In Scope | 19:11 |
| Added | social engineering against asana support or asana employees | OTHER | Out of Scope | 19:11 |
| Program Removed | — | — | — | 17:22 |
| Added | https://app.asana.com | URL | In Scope | 17:00 |
| Added | https://asana.com | URL | In Scope | 17:00 |
| Added | https://asana.com/apps?category=made-by-asana | URL | In Scope | 17:00 |
| Added | https://asana.com/download | OTHER | In Scope | 17:00 |
| Added | https://apps.apple.com/us/app/asana-mobile/id489969512 | IOS | In Scope | 17:00 |
| Added | https://play.google.com/store/apps/details?id=com.asana.app&hl=en | ANDROID | In Scope | 17:00 |
| Added | https://form.asana.com | URL | In Scope | 17:00 |
| Added | *.app.asana.com | URL | In Scope | 17:00 |
| Added | *.asana.biz | OTHER | In Scope | 17:00 |
| Added | subdomain takeover at *asana.biz | OTHER | In Scope | 17:00 |
| Added | other subdomains of asana.com | URL | Out of Scope | 17:00 |
| Added | social engineering against asana support or asana employees | OTHER | Out of Scope | 17:00 |
| Added | jira*.integrations.asana.plus | URL | Out of Scope | 17:00 |
| Added | asana.okta.com | URL | Out of Scope | 17:00 |
| Added | assets.asana.biz | URL | Out of Scope | 17:00 |
| Added | forms that you do not own | OTHER | Out of Scope | 17:00 |
| Added | jira*.integrations.asana.plus | URL | Out of Scope | 17:00 |
| Added | forms that you do not own | OTHER | Out of Scope | 17:00 |
| Added | https://apps.apple.com/us/app/asana-mobile/id489969512 | IOS | In Scope | 17:00 |
| Added | *.asana.biz | WILDCARD | In Scope | 17:00 |
| Added | subdomain takeover at *asana.biz | WILDCARD | In Scope | 17:00 |
| Added | other subdomains of asana.com | URL | Out of Scope | 17:00 |
| Added | https://asana.com/download | URL | In Scope | 17:00 |
| Added | social engineering against asana support or asana employees | OTHER | Out of Scope | 17:00 |
| Added | asana.okta.com | URL | Out of Scope | 17:00 |
| Added | https://app.asana.com | URL | In Scope | 17:00 |
| Added | https://asana.com | URL | In Scope | 17:00 |
| Added | https://play.google.com/store/apps/details?id=com.asana.app&hl=en | ANDROID | In Scope | 17:00 |
| Added | https://asana.com/apps?category=made-by-asana | URL | In Scope | 17:00 |
| Added | https://form.asana.com | URL | In Scope | 17:00 |
| Added | *.app.asana.com | WILDCARD | In Scope | 17:00 |
| Added | assets.asana.biz | URL | Out of Scope | 17:00 |