— none listed —
— no diffs detected in snapshot history yet —
No reports yet — be the first to share your triage timing for Staging.every.org.
// peer-sourced response times. platforms won’t publish this — hunters can. anonymized in aggregate.
{
"allows_bounty_splitting": false,
"average_time_to_bounty_awarded": null,
"average_time_to_first_program_response": null,
"average_time_to_report_resolved": null,
"handle": "stagingdoteverydotorg",
"id": 0,
"managed_program": false,
"name": "Staging.every.org",
"offers_bounties": false,
"offers_swag": false,
"response_efficiency_percentage": 0,
"submission_state": "open",
"url": "https://hackerone.com/stagingdoteverydotorg",
"website": "https://staging.every.org",
"targets": {
"in_scope": [
{
"asset_identifier": "staging.every.org",
"asset_type": "URL",
"availability_requirement": "low",
"confidentiality_requirement": "high",
"eligible_for_bounty": false,
"eligible_for_submission": true,
"instruction": "Please create all accounts at https://staging.every.org!! We have it configured just like the real every.org so any vulnerabilities you find will be valid :)\n\nstaging.every.org is protected with HTTP Basic Auth to prevent crawlers from indexing it. The credentials are as follows.\nUsername: `give`\nPassword: `give`",
"integrity_requirement": "high",
"max_severity": "critical"
}
],
"out_of_scope": []
}
}