Vulnerability Disclosure Program (VDP)

VDPs are meant for responsibly reporting vulnerabilities you encounter — not for actively hunting for fame or reputation. Even if you're just starting out, consider focusing on rewarded bug bounty programs instead.

wise

BugcrowdView on Bugcrowd
RawAI Enhanced
8
In Scope
20
Out of Scope

In-Scope Assets (8)

AssetCategoryBountyQuick Links
*.transferwise.comURLNo
*.wise.comURLNo
AWS infrastructure and services in use by Wise (eg: S3 buckets)OTHERNo-
https://apps.apple.com/us/app/wise-ex-transferwise/id612261027IOSNo-
https://github.com/transferwise/*OTHERNo-
https://play.google.com/store/apps/details?id=com.transferwise.android&hl=en_US&gl=USANDROIDNo
https://transferwise.comURLNo
https://wise.comURLNo
Out-of-Scope Assets (20)
AssetCategoryBounty
*.transferwise.techURLNo
*.tw.comURLNo
*.tw.eeURLNo
Any Github asset not under the “transferwise” organizationOTHERNo
Non-current version of the Android appANDROIDNo
Non-current version of the iOS appIOSNo
Third party authentication services (eg: Facebook and Google)URLNo
Third party services not hosted by WiseURLNo
Wise Affiliate ProgramURLNo
bootstrap.transferwise.comURLNo
brand.transferwise.comURLNo
brand.wise.comURLNo
https://transferwise.com/help/contactURLNo
https://wise.com/help/contactURLNo
links.transferwise.comURLNo
links.wise.comURLNo
status.transferwise.comURLNo
status.wise.comURLNo
tech.transferwise.comURLNo
widgets.transferwise.comURLNo