Help us improve our security and earn rewards! We want to protect our users' data better, so we're inviting security experts like you to test our system. If you find security problems, we'll pay you for reporting them.

Basic rules

  • Test carefully: Don't break our service or use automatic testing tools
  • Use only your own test account - never try to access other users' accounts
  • Tell us immediately if you find a way into our system
  • Keep any problems you find secret until we fix them
  • Only the first person to report a specific problem gets the reward

Security problems we're looking for

We'll reward you for finding any security problems. You'll get bigger rewards for finding these specific issues:

  • Ways to access other users' information (just finding that an account exists doesn't count)
  • Ways to bypass our API security (like getting unlimited API calls or accessing the API without proper login)
  • Ways to inject harmful code into our website (XSS attacks)
  • Ways to run unauthorized code on our servers

Important: We only reward for security problems that could harm users or their data and not for regular bugs (like display issues or broken features).

What we don't pay for

  • Attempts to crash our service or guess passwords repeatedly
  • Problems with mixed secure/non-secure content
  • Tricks that rely on fooling people
  • Security problems that are just theories
  • Missing security headers or common security settings (like password rules or email checks)

How we pay

The more serious the security problem you find, the more we'll pay. There's no fixed limit - if you find something really serious or clever, we'll reward you well. We decide the payment amount based on how dangerous the security problem could be.

We send payments through PayPal after we fix the problem. PayPal will take their usual fee from your reward amount.

How to report problems

1. Fill out our security report form
2. We'll check your report within 7 days
3. Once we fix the problem, we'll send your reward through PayPal

Hall of fame