Scope Updates
Recent changes to bug bounty program scopes.
| Change | Asset | Category | Scope | Program | Platform | Time |
|---|---|---|---|---|---|---|
| Added | interoperability issues that are caused by other openpgp implementations' non-compliance with the openpgp standard | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | security vulnerabilities in the openpgp standard that are not possible to fix or work around in openpgp.js (without causing interoperability issues) | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | security vulnerabilities that can only be caused by using openpgp.js's low-level api, or by using openpgp.js's high-level api in an incorrect or unintended way | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | all domains or subdomains not listed in the above list of 'scopes' | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | all domains or subdomains not listed in the above list of 'scopes' | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | anything that is not explicitely listed as part of the scope | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | all other third parties | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://blog.bitoasis.net | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | websites under bitoasis that utilize cms frameworks (e.g., wordpress, joomla, sitecore) | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | all domains or subdomains not listed in the above list of 'scopes' | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | please let us know if you have any questions regarding the scope | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | /tracking | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | /apps-messenger (the chatbot in general is out of scope) | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | all domains not listed in-scope | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://keycloak.apps.otto.de | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/user/contactFormSubmit | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/user/sendcallbackrequest | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/clara | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/kundenchat | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/newsroom | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/updated | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/soulfully | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/twoforfashion | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/roombeez | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 | |
| Added | https://www.otto.de/reblog | OTHER | Out of Scope | YesWeHack | 2026-02-21 00:33 |