— no diffs detected in snapshot history yet —
No reports yet — be the first to share your triage timing for Peloton.
// peer-sourced response times. platforms won’t publish this — hunters can. anonymized in aggregate.
{
"allows_bounty_splitting": false,
"average_time_to_bounty_awarded": null,
"average_time_to_first_program_response": 2,
"average_time_to_report_resolved": 1378,
"handle": "peloton",
"id": 0,
"managed_program": true,
"name": "Peloton",
"offers_bounties": false,
"offers_swag": false,
"response_efficiency_percentage": 33,
"submission_state": "open",
"url": "https://hackerone.com/peloton",
"website": "http://onepeloton.com",
"targets": {
"in_scope": [
{
"asset_identifier": "cms.onepeloton.com",
"asset_type": "URL",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "",
"integrity_requirement": null,
"max_severity": "critical"
},
{
"asset_identifier": "cosmos-stage.onepeloton.com",
"asset_type": "URL",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "",
"integrity_requirement": null,
"max_severity": "high"
},
{
"asset_identifier": "cosmos.onepeloton.com",
"asset_type": "URL",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "",
"integrity_requirement": null,
"max_severity": "critical"
},
{
"asset_identifier": "qa1-cms.onepeloton.com",
"asset_type": "URL",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "",
"integrity_requirement": null,
"max_severity": "high"
},
{
"asset_identifier": "www.onepeloton.com",
"asset_type": "URL",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "",
"integrity_requirement": null,
"max_severity": "critical"
}
],
"out_of_scope": [
{
"asset_identifier": "Security vulnerabilities that are identified in Peloton products or in website domains owned, operated, or controlled by Peloton that are not listed above are OOS",
"asset_type": "OTHER",
"availability_requirement": null,
"confidentiality_requirement": null,
"eligible_for_bounty": false,
"eligible_for_submission": false,
"instruction": "",
"integrity_requirement": null,
"max_severity": "none"
}
]
}
}Security vulnerabilities that are … are not listed above are OOSother