Welcome to mirror list, hosted at ThFree Co, Russian Federation.

github.com/matomo-org/matomo.git - Unnamed repository; edit this file 'description' to name the repository.
summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMatthieu Aubry <mattab@users.noreply.github.com>2019-07-13 12:52:50 +0300
committerGitHub <noreply@github.com>2019-07-13 12:52:50 +0300
commit71932a7ce95eef0af224dd793a037a66b4970a1d (patch)
tree502fe0c4d79c2b0149be9f8980d6d08325af7756 /SECURITY.md
parent92fa8a21adb5a553a8070166f2e26f777dbf6e2f (diff)
Updated bounties and link to hackerone program
Diffstat (limited to 'SECURITY.md')
-rw-r--r--SECURITY.md8
1 files changed, 5 insertions, 3 deletions
diff --git a/SECURITY.md b/SECURITY.md
index ca320b9b79..29a9c0223f 100644
--- a/SECURITY.md
+++ b/SECURITY.md
@@ -2,14 +2,16 @@
## Security Bug Bounty Program
-The Matomo Security Bug Bounty Program is designed to encourage security research in Matomo software and to reward those who help us create the safest web analytics platform. The bounty for valid critical security bugs is a **$555** (US) cash reward. The bounty for non-critical bugs is **$242** (US), paid via Paypal.
+The Matomo Security Bug Bounty Program is designed to encourage security research in Matomo software and to reward those who help us create the safest web analytics platform. The bounty for valid critical security bugs is a **$777** (US) cash reward. The bounty for non-critical bugs is **$333** (US), paid via Paypal.
## Responsible disclosure by email
-If you have found a security issue in Matomo please read [our security notes](https://matomo.org/security/) regarding responsible disclosures.
-[Email your Report Vulnerability to the Matomo Security team](mailto:security@matomo.org?subject=Reporting%20Vulnerability%20in%20Matomo)
+We encourage you to responsibly report issues via our [Matomo Bug Bounty Program on HackerOne](https://hackerone.com/matomo) or you can also
+[email us at security@matomo.org](mailto:security@matomo.org?subject=Reporting%20Vulnerability%20in%20Matomo).
+
+If you have found a security issue in Matomo please read [our security notes](https://matomo.org/security/) regarding responsible disclosures.
## Improve your Matomo Server Security