Vulnerability Disclosure Program (VDP)

VDPs are meant for responsibly reporting vulnerabilities you encounter — not for actively hunting for fame or reputation. Even if you're just starting out, consider focusing on rewarded bug bounty programs instead.

mastercard

BugcrowdView on Bugcrowd
RawAI Enhanced
22
In Scope
0
Out of Scope

In-Scope Assets (22)

AssetCategoryBountyQuick Links
Finicity - OBB (Open Banking Business Service)URLNo-
Finicity ConnectURLNo-
Finicity DecisioningURLNo-
Finicity- Data ServicesURLNo-
Finicity- Open Banking Payment History applicationURLNo-
Public Others TargetOTHERNo-
SRC integration on https://masterpassteststore.com/. Only the Masterpass checkout functionality is in scopeURLNo-
https://consumer.finicityreports.comURLNo
https://demo.priceless.com/URLNo
https://developer.mastercard.comURLNo
https://donate.mastercard.comURLNo
https://performancemarketing.mastercard.com/portal/URLNo
https://pioneer.truata.com/URLNo
https://priceless.com/golf/URLNo
https://src.mastercard.com/*URLNo
https://src.mastercard.com/profile/enrollURLNo
https://www.finicity.comURLNo
https://www.mastercard.ch/de-ch.htmlURLNo
https://www.mastercard.ch/fr-ch.htmlURLNo
https://www.mastercard.com.au/en-au.htmlURLNo
https://www.mastercard.nl/nl-nl.htmlURLNo
https://www.mastercard.us/en-us.htmlURLNo