418sec / huntr

Public Roadmap | huntr.dev
https://huntr.dev
264 stars 89 forks source link

Secondary Leadership Board on Huntr #2276

Open dievus opened 2 years ago

dievus commented 2 years ago

Huntr appears to use a leadership board mechanism that scores based on raw amounts of dollars earned in 30/90/all-time periods of time. From time-to-time a researcher finds a vulnerability in a repository that has been depleted of funds, but yet wants to still submit the issue. The platform does not appear to have a mechanism in place that tracks or has a comparable competition model as the current leaderboard structure.

Many of us are submitting vulnerabilities either for CVEs, for experience, or to simply help secure repositories. I believe it would be advantageous for researchers to have an additional leaderboard that reflects the number of valid reports submitted in the same time frame. I also believe that it would show the overall altruism of Huntr users who choose to use their time to help secure repositories that otherwise have no financial benefit.

My request, and recommendation, would be to modify the current leadership board structure to include a separate category that covers the overall submission of VALID reports in the same time frames. Identifying users and their desire to help regardless of payout would be an incredible way to show appreciation to those users.