Finnair Assetsother· critical— no diffs detected in snapshot history yet —
No reports yet — be the first to share your triage timing for Finnair Vulnerability Disclosure.
// peer-sourced response times. platforms won’t publish this — hunters can. anonymized in aggregate.
{
"allows_bounty_splitting": false,
"average_time_to_bounty_awarded": null,
"average_time_to_first_program_response": 33,
"average_time_to_report_resolved": null,
"handle": "finnair_vdp",
"id": 0,
"managed_program": true,
"name": "Finnair Vulnerability Disclosure",
"offers_bounties": false,
"offers_swag": false,
"response_efficiency_percentage": 63,
"submission_state": "open",
"url": "https://hackerone.com/finnair_vdp",
"website": "https://www.finnair.com",
"targets": {
"in_scope": [
{
"asset_identifier": "Finnair Assets",
"asset_type": "OTHER",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "If you have found a vulnerability in Finnair apps or sites that are not in the Out of Scope or Scope Exclusions list on the policy page, please submit a report.",
"integrity_requirement": null,
"max_severity": "critical"
}
],
"out_of_scope": [
{
"asset_identifier": "auth.finnair.com",
"asset_type": "URL",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": false,
"instruction": "Please note, that this assets is out of the program scope.",
"integrity_requirement": null,
"max_severity": "none"
}
]
}
}