8 ms·
I don't think developers would be eligible for bounties for vulnerabilities found in their own projects.
by trulyrandom 8y ago
I don't think developers would be eligible for bounties for vulnerabilities found in their own projects.
- Ace17 8y agoProbably not. However, such a limitation is rather easy to workaround. Which means now, buggy commits are going to look suspicous.
- talltimtom 8y agoSo? You sell your exploits to another dev at a fraction of the bounty, other devs so the same for you. It’s not like that puts up any real obstacle.