Vulnerability Disclosure Program (VDP)

VDPs are meant for responsibly reporting vulnerabilities you encounter — not for actively hunting for fame or reputation. Even if you're just starting out, consider focusing on rewarded bug bounty programs instead.

truecar-vdp-pro

BugcrowdView on Bugcrowd
RawAI Enhanced
2
In Scope
0
Out of Scope
Scope Changes (16)
Mar 9, 2026
ChangeAssetCategoryScopeTime
Added███████████████URLIn Scope15:48
Added███████████████URLIn Scope15:48
Added█████████████████████████████████URLIn Scope15:48
Removedhttps://dealerportal.truecar.com/URLIn Scope15:48
Removedhttps://www.trucar.comURLIn Scope15:48
Added█████████████████████████████████URLIn Scope15:48
Mar 5, 2026
ChangeAssetCategoryScopeTime
Addedhttps://www.trucar.comURLIn Scope22:33
Addedhttps://dealerportal.truecar.com/URLIn Scope22:33
Addedhttps://www.trucar.comURLIn Scope22:33
Addedhttps://dealerportal.truecar.com/URLIn Scope22:33
Feb 25, 2026
ChangeAssetCategoryScopeTime
Addedhttps://www.trucar.comURLIn Scope19:17
Addedhttps://dealerportal.truecar.com/URLIn Scope19:17
Addedhttps://www.trucar.comURLIn Scope17:16
Addedhttps://dealerportal.truecar.com/URLIn Scope17:16
Addedhttps://www.trucar.comURLIn Scope17:16
Addedhttps://dealerportal.truecar.com/URLIn Scope17:16