— no diffs detected in snapshot history yet —
No reports yet — be the first to share your triage timing for Cloudways by DigitalOcean.
// peer-sourced response times. platforms won’t publish this — hunters can. anonymized in aggregate.
{
"id": "afeb2624-ac2e-46bc-b078-b0e018baeb62",
"name": "Cloudways by DigitalOcean",
"company_handle": "digitalocean",
"handle": "cloudways",
"url": "https://www.intigriti.com/programs/digitalocean/cloudways/detail",
"status": "open",
"confidentiality_level": "public",
"tacRequired": false,
"twoFactorRequired": false,
"min_bounty": {
"value": 50,
"currency": "USD"
},
"max_bounty": {
"value": 4000,
"currency": "USD"
},
"targets": {
"in_scope": [
{
"type": "wildcard",
"endpoint": "*.cloudways.com",
"description": "All external services/software like `support.cloudways.com` and `feedback.cloudways.com` that are not owned, managed or controlled by Cloudways are considered out of scope and ineligible for rewards.",
"impact": "Tier 2"
},
{
"type": "url",
"endpoint": "api.cloudways.com",
"description": "Cloudways API offers an alternative to the Cloudways Platform. Many, but not all actions that Cloudways Platform allows through the UI can also be performed through Cloudways API.\n\nIn the event a vulnerability is applicable to both the Cloudways Platform (platform.cloudways.com) and API, it will be treated as one root incident.",
"impact": "Tier 2"
},
{
"type": "url",
"endpoint": "developers.cloudways.com",
"description": "Cloudways Developers authorizes the API key to use Cloudways API. The vulnerability testing of this target should focus on the process of API authorization ONLY. All other areas on Cloudways developers are strictly OUT OF SCOPE.",
"impact": "Tier 2"
},
{
"type": "url",
"endpoint": "platform.cloudways.com",
"description": "Cloudways Platform is the primary target for this program. Cloudways Platform is the main interaction point for Cloudways customers. Through the Platform, customers could launch managed cloud servers and then set up their application on these servers. Once the application is up, Cloudways Platform provides users with options to manage their servers and applications.",
"impact": "Tier 2"
},
{
"type": "url",
"endpoint": "unified.cloudways.com",
"description": "Cloudways Platofrm with new UI along with new api and backend to handle all the services of Cloudways",
"impact": "Tier 2"
},
{
"type": "url",
"endpoint": "www.cloudways.com",
"description": "Cloudways website is the corporate website that is often the initial touchpoint for a significant number of interactions between visitors, customers and Cloudways. It offers product details and related corporate information to visitors.\n",
"impact": "Tier 2"
},
{
"type": "url",
"endpoint": "css-tricks.com",
"description": null,
"impact": "Tier 3"
}
],
"out_of_scope": []
}
}developers.cloudways.com· Tier 2— none listed —