Vulnerability Disclosure Program (VDP)

VDPs are meant for responsibly reporting vulnerabilities you encounter — not for actively hunting for fame or reputation. Even if you're just starting out, consider focusing on rewarded bug bounty programs instead.

alshaya

HackerOneView on HackerOne
RawAI Enhanced
166
In Scope
7
Out of Scope

In-Scope Assets (166)

AssetCategoryBountyQuick Links
*.ahwetzeitounakuwait.comWILDCARDNo
*.aloyoga.aeWILDCARDNo
*.aloyoga.com.kwWILDCARDNo
*.aloyoga.com.qaWILDCARDNo
*.alshaya.comWILDCARDNo
*.alshayaenterprises.comWILDCARDNo
*.americaneagle.aeWILDCARDNo
*.americaneagle.com.bhWILDCARDNo
*.americaneagle.com.egWILDCARDNo
*.americaneagle.com.joWILDCARDNo
*.americaneagle.com.kwWILDCARDNo
*.americaneagle.com.qaWILDCARDNo
*.americaneagle.com.saWILDCARDNo
*.amitinoura.comWILDCARDNo
*.aura-mena.comWILDCARDNo
*.babelkwt.comWILDCARDNo
*.bathandbodyworks.aeWILDCARDNo
*.bathandbodyworks.com.bhWILDCARDNo
*.bathandbodyworks.com.egWILDCARDNo
*.bathandbodyworks.com.kwWILDCARDNo
*.bathandbodyworks.com.qaWILDCARDNo
*.bathandbodyworks.com.saWILDCARDNo
*.bathandbodyworks.com.trWILDCARDNo
*.bathandbodyworks.joWILDCARDNo
*.bathandbodyworks.plWILDCARDNo
*.bathandbodyworks.roWILDCARDNo
*.bebabelkuwait.com/WILDCARDNo
*.bouchonbakeryme.comWILDCARDNo
*.carrier.alshaya.comWILDCARDNo
*.debenhams.aeWILDCARDNo
*.debenhams.com.kwWILDCARDNo
*.debenhams.saWILDCARDNo
*.footlocker.aeWILDCARDNo
*.footlocker.com.bhWILDCARDNo
*.footlocker.com.egWILDCARDNo
*.footlocker.qaWILDCARDNo
*.kidzaniakuwait-tickets.comWILDCARDNo
*.lepainquotidienme.comWILDCARDNo
*.mothercare.aeWILDCARDNo
*.mothercare.com.egWILDCARDNo
*.mothercare.com.kwWILDCARDNo
*.mothercare.com.saWILDCARDNo
*.mothercare.qaWILDCARDNo
*.muji.aeWILDCARDNo
*.muji.bhWILDCARDNo
*.muji.com.kwWILDCARDNo
*.muji.com.saWILDCARDNo
*.muji.qaWILDCARDNo
*.payless.com.kwWILDCARDNo
*.paylessshoes.aeWILDCARDNo
*.pfchangsme.comWILDCARDNo
*.pinkberryme.comWILDCARDNo
*.pizzaexpresskw.comWILDCARDNo
*.potterybarn.aeWILDCARDNo
*.potterybarn.com.kwWILDCARDNo
*.potterybarn.com.saWILDCARDNo
*.potterybarnkids.aeWILDCARDNo
*.potterybarnkids.com.kwWILDCARDNo
*.potterybarnkids.com.saWILDCARDNo
*.raisingcanesme.comWILDCARDNo
*.shakeshack.co.ukWILDCARDNo
*.shaya.com.trWILDCARDNo
*.shayakahve.com.trWILDCARDNo
*.starbucks.azWILDCARDNo
*.starbucks.com.kzWILDCARDNo
*.starbucks.com.trWILDCARDNo
*.starbuckscardtr.comWILDCARDNo
*.supplier.alshaya.comWILDCARDNo
*.tamanna.comWILDCARDNo
*.tekzone.meWILDCARDNo
*.victoriassecret.aeWILDCARDNo
*.victoriassecret.com.kwWILDCARDNo
*.victoriassecret.com.qaWILDCARDNo
*.victoriassecret.com.saWILDCARDNo
*.victoriassecret.com.trWILDCARDNo
*.victoriassecret.plWILDCARDNo
*.visionexpress.meWILDCARDNo
*.westelm.aeWILDCARDNo
*.westelm.com.kwWILDCARDNo
*.westelm.com.saWILDCARDNo
6472633752IOSNo-
AE + Aerie Middle East_MENA_ANDROID_com.aeo.menaANDROIDNo-
AE + Aerie Middle East_MENA_IOS_1547602361IOSNo-
Alo GCC_GCC_ANDROID_com.aloyoga.menaANDROIDNo-
Alo GCC_GCC_IOS_1664702687IOSNo-
Aura MENA - Rewarding Loyalty_MENA_ANDRIOD_com.alshaya.auraANDROIDNo-
Aura MENA - Rewarding Loyalty_MENA_IOS_1532694353IOSNo-
Bath&BodyWorks_MENA_ANDROID_com.bbw.menaANDROIDNo
Bath&BodyWorks_MENA_IOS_1541576878IOSNo-
Boots Middle East_MENA_IOS_1537064114IOSNo-
Debenhams MENA_MENA_IOS_1603834040IOSNo-
Foot Locker MENA_MENA_ANDROID_com.footlocker.menaANDROIDNo-
Foot Locker MENA_MENA_IOS_1563808574IOSNo-
H&M MENA - Shop Fashion Online_MENA_ANDROID_com.hm.menaANDROIDNo-
H&M MENA - Shop Fashion Online_MENA_IOS_1445040108IOSNo-
Mothercare MENA Baby/Kids Shop_MENA_IOS_1563370517IOSNo-
Mothercare MENA_MENA_ANDROID_com.mothercare.menaANDROIDNo-
Victoria's Secret MENA_MENA_ANDROID_com.vs.menaANDROIDNo-
Victoria's Secret MENA_MENA_IOS_1559906965IOSNo-
ae.boots.comURLNo
ae.charlottetilbury.comURLNo
ae.cos.comURLNo
ae.cosstores.comURLNo
ae.hm.comURLNo
ae.shopjustice.meURLNo
apps.havelockone.comURLNo
bakimonarim.shaya.com.trURLNo
bn.boots.comURLNo
boysweb.shaya.com.trURLNo
boyswebtest.shaya.com.trURLNo
card.starbucks.com.kzURLNo
ccareapuat.alshaya.comURLNo
cloud.havelockone.comURLNo
cloudconnect.havelockone.comURLNo
com.chipotle.menaANDROIDNo
coms.carrier.alshaya.comURLNo
comsuat.carrier.alshaya.comURLNo
customercare.alshaya.comURLNo
dev.alshaya.comURLNo
devimages.alshaya.comURLNo
eg.hm.comURLNo
gtmsservice.alshaya.comURLNo
internaljobs.alshaya.comURLNo
jenkins.alshaya.comURLNo
jobsearch.alshaya.comURLNo
kuwait.kidzania.comURLNo
kw.boots.comURLNo
kw.charlottetilbury.comURLNo
kw.cos.comURLNo
kw.cosstores.comURLNo
kw.hm.comURLNo
kw.shopjustice.meURLNo
onlinepos.shaya.com.trURLNo
onlinestaffstore.alshaya.comURLNo
opsassistbrandedsolutions.shaya.com.trURLNo
parallels.havelockone.comURLNo
pmp.shaya.com.trURLNo
prodimages.alshaya.comURLNo
qa.charlottetilbury.comURLNo
qa.hm.comURLNo
qt.boots.comURLNo
sa.boots.comURLNo
sa.charlottetilbury.comURLNo
sa.cos.comURLNo
sa.cosstores.comURLNo
sa.hm.comURLNo
sa.shopjustice.meURLNo
sbuxopsassist.shaya.com.trURLNo
starbucks.azURLNo
suppliertraining.alshaya.comURLNo
victoriassecret.czURLNo
victoriassecret.ro/URLNo
victoriassecretbeauty.roURLNo
vpn.shaya.com.trURLNo
www.ahwetzeitounakuwait.comURLNo
www.amitinoura.comURLNo
www.babelkwt.comURLNo
www.bebabelkuwait.comURLNo
www.bouchonbakeryme.comURLNo
www.havelockone.comURLNo
www.lepainquotidienme.comURLNo
www.pfchangsme.comURLNo
www.pinkberryme.comURLNo
www.pizzaexpresskw.comURLNo
www.raisingcanesme.comURLNo
www.shayakahve.com.tr/URLNo
Out-of-Scope Assets (7)
AssetCategoryBounty
*.thebodyshop.com.bhWILDCARDNo
*.thebodyshop.com.kwWILDCARDNo
*.thebodyshop.com.trWILDCARDNo
*.thebodyshop.plWILDCARDNo
*.thebodyshop.qaWILDCARDNo
crm.alshayamarketing.comURLNo
thebodyshop.czURLNo