Bug Triage and Reporting
Inside the GitLab public bug bounty program

Inside the GitLab public bug bounty program

4/29/2019 · Kathy Wang

What this post added

This post details the launch and early success of GitLab's public bug bounty program. It outlines the program's goals, metrics for success (quantity of submissions, repeat reporters, transparency, responsiveness, competitive rewards), and highlights the importance of both proactive and reactive security measures. It also lists the top five GitLab reporters by bounty and discusses the value of transparency in vulnerability disclosure.

Read the original post ↗