amazonvrp

HackerOneView on HackerOne
RawAI Enhanced
100
In Scope
10
Out of Scope

In-Scope Assets (100)

AssetCategoryBountyQuick Links
*.amazon.aeWILDCARDYes
*.amazon.caWILDCARDYes
*.amazon.clWILDCARDYes
*.amazon.cnWILDCARDYes
*.amazon.co.jpWILDCARDYes
*.amazon.co.ukWILDCARDYes
*.amazon.co.zaWILDCARDYes
*.amazon.comWILDCARDYes
*.amazon.com.auWILDCARDYes
*.amazon.com.beWILDCARDYes
*.amazon.com.brWILDCARDYes
*.amazon.com.coWILDCARDYes
*.amazon.com.mxWILDCARDYes
*.amazon.com.ngWILDCARDYes
*.amazon.com.trWILDCARDYes
*.amazon.deWILDCARDYes
*.amazon.egWILDCARDYes
*.amazon.esWILDCARDYes
*.amazon.frWILDCARDYes
*.amazon.inWILDCARDYes
*.amazon.itWILDCARDYes
*.amazon.nlWILDCARDYes
*.amazon.plWILDCARDYes
*.amazon.saWILDCARDYes
*.amazon.seWILDCARDYes
*.amazon.sgWILDCARDYes
1057338687IOSYes-
1151746202IOSYes-
1265170914IOSYes-
1276296103IOSYes-
1454725763IOSYes-
1475021574IOSYes-
1478350915IOSYes-
1494755014IOSYes-
1498197033IOSYes-
1532153219IOSYes-
1552455423IOSYes-
1579372261IOSYes-
1592204907IOSYes-
1659883691IOSYes-
297606951IOSYes-
335187483IOSYes-
342576766IOSYes-
348712880IOSYes-
358861688IOSYes-
374254473IOSYes-
510855668IOSYes-
545519333IOSYes-
6444868926IOSYes-
6452192521IOSYes-
6471528064IOSYes-
6479334468IOSYes-
6560104638IOSYes-
794141485IOSYes-
988788863IOSYes-
Amazon Subsidiaries (Please only actively test explicitly stated scope)OTHERNo-
GenAI Apps under *.amazon.*AIYes-
Other Amazon Retail Assets (Please only actively test explicitly stated scope)OTHERNo-
Other Amazon Retail Mobile Apps (Please only actively test explicitly stated scope)OTHERNo-
Other Amazon Retail Sites (Please only actively test explicitly stated scope)OTHERNo-
amazon.speech.simANDROIDYes
amazonpayinsurance.inURLYes
com.amazon.aba.applicationANDROIDYes
com.amazon.amazonone.androidappANDROIDYes
com.amazon.amazonvideo.livingroomANDROIDYes
com.amazon.astroANDROIDYes
com.amazon.avod.thirdpartyclientANDROIDYes
com.amazon.enterprise.access.androidANDROIDYes
com.amazon.firetv.recast.blaster.aospANDROIDYes
com.amazon.flex.rabbitANDROIDYes
com.amazon.helix.prodANDROIDYes
com.amazon.ihm.candycaneANDROIDYes
com.amazon.imdb.tv.mobile.appANDROIDYes
com.amazon.kisan.appANDROIDYes
com.amazon.mShop.android.business.shoppingANDROIDYes
com.amazon.mShop.android.shoppingANDROIDYes
com.amazon.minitv.android.appANDROIDYes
com.amazon.mp3ANDROIDYes
com.amazon.mp3.automotiveOSANDROIDYes
com.amazon.music.tvANDROIDYes
com.amazon.primenow.seller.androidANDROIDYes
com.amazon.relayANDROIDYes
com.amazon.sellerflexmobileANDROIDYes
com.amazon.sellermobile.androidANDROIDYes
com.amazon.sft.rangoli.seller.appANDROIDYes
com.amazon.shopperpanel.android.mobile.appANDROIDYes
com.amazon.swa.mobileappANDROIDYes
com.amazon.tahoe.grownupsANDROIDYes
com.amazon.technician.androidANDROIDYes
com.amazon.vendormobile.androidANDROIDYes
com.amazon.vendormobile.india.androidANDROIDYes
com.amazon.warhol.androidANDROIDYes
com.amazon.ziggy.androidANDROIDYes
com.imdbtv.livingroomANDROIDYes
com.localqueenANDROIDYes
https://www.amazonpay.in/*OTHERYes-
in.amazon.mShop.android.business.shoppingANDROIDYes
in.amazon.mShop.android.shoppingANDROIDYes
primevideo.com/*WILDCARDYes
www.amazon.*URLYes
Out-of-Scope Assets (10)
AssetCategoryBounty
"Contact Us" FunctionalityOTHERNo
*.*a2z*.*OTHERNo
*.aws.*OTHERNo
*.devOTHERNo
AWS and AWS customer assets are strictly out of scopeOTHERNo
Amazon Web Services (AWS)OTHERNo
Anything considered a non-prod assetOTHERNo
Anything which redirects to AWSOTHERNo
amazongames.comURLNo
learning.logistics.amazon.comOTHERNo