Coordinated and Responsible Vulnerability Disclosure Free Bug Bounty Program 423,071 coordinated disclosures
229,092 fixed vulnerabilities
570 bug bounties with 1110 websites
11,443 researchers, 932 honor badges

bookshelf.ca Bug Bounty Program

bookshelf.ca runs a bug bounty program to ensure the highest security and privacy of its websites. Everyone is eligible to participate in the program subject to the below-mentioned conditions and requirements of bookshelf.ca

Open Bug Bounty performs triage and verification of the submissions. However, we never intervene to the further process of vulnerability remediation and disclosure between bookshelf.ca and researchers.

Bug bounty program allow all submissions.

Bug Bounty Scope

The following websites are within the scope of the program:

bookshelf.ca

Non-Intrusive Submissions Handling

The following section encompasses submission of the vulnerabilities that do not require intrusive testing as per Open Bug Bounty rules:

- Cross Site Scripting (XSS)
- Open Redirect

- Cross Site Request Forgery (CSRF)
- Improper Access Control

General Requirements:

No general requirements

Testing Requirements:

No testing requirements

Possible Awards:

No possible awards

Community Rating

Provided by security researchers who reported security vulnerabilities via this bug bounty program:

 
Response Time  How quickly researchers get responses to their submissions.
Remediation Time  How quickly reported submissions are fixed.
Cooperation and Respect  How fairly and respectfully researchers are being treated.

Researcher's comments

    13 August, 2019
    unknownamd_:
i forgot to say that you've fixed it !!!!!
    13 August, 2019
    unknownamd_:
I'm sorry but i have to say this...
why when i reported an XSS for you, your response was "can't reproduce the bug" then you fixed it!!? what would you lose if you submit it and make me achive badges?

  Latest Patched

 26.08.2019 flagma.ru
 26.08.2019 keeplinks.co
 25.08.2019 desired.de
 25.08.2019 sandiego.edu
 25.08.2019 redalyc.org
 24.08.2019 animego.to
 24.08.2019 jrailpass.com
 24.08.2019 meteoam.it
 24.08.2019 mejorenvo.org
 23.08.2019 customs.gov.ng

  Latest Blog Posts

19.08.2019 by ismailtsdln
IBM - Cross site Scripting [XSS]
15.08.2019 by thevivekkryadav
HOW I WAS BYPASSED CLOUDFLARE WAF
13.08.2019 by Renzi25031469
XSSCon - XSS Tool @Kitploit
13.08.2019 by Cur1S3
I Found a multiple xss on https://clickmeeting.com
13.08.2019 by ZIKADS
xss at anghami.com

  Recent Recommendations

    26 August, 2019
     Bhavesh67635040:
Thanks you for helping me find xss on my photography websitr
    26 August, 2019
     lonelygunda:
Helped patch xss
    26 August, 2019
     lonelygunda:
Thanks for finding xss
    26 August, 2019
     Hackerblackbird:
thanks for helping me out to find xss
    25 August, 2019
     rtm86:
Thanks Armin for disclosing an issue to us so that we could close it within minutes