Closed chadwhitacre closed 8 years ago
Awesome! 👍
I've been tinkering with Draft 1 rather than making a new draft.
Is it too bold to title this, "A New Standard in Transparent Security"?
Maybe just "Transparent Security"
Any objections to publishing?
"Transparent Security: Introducing Gratipay's Program on HackerOne"
Alright, here we go ...
I added some stats. A quarter of our reports are duplicates, and half our reports are low-quality.
Ready? I think we're ready ...
Published! :flushed:
I've received a kind note in private email from HackerOne's CEO. I've asked him if I can share it here.
Kudos to the Gratipay team for the Transparent Security blog posting. It should be essential reading for anyone doing bug bounty programs or vulnerability coordination. You don't know how proud we are to have you on the H1 platform!
Also some encouraging feedback on Twitter:
@whit537 Nice article about the @Gratipay bounty program!
https://twitter.com/mrusschen/status/718485981075283971
Holy cow @Gratipay, this is a goldmine of feedback. Great writeup!
Reticketed from https://github.com/gratipay/inside.gratipay.com/issues/558#issuecomment-206426101.
We've put a lot of effort over the past few months into setting up our HackerOne program. Let's blog about it!
Draft 1: "An Open Vulnerability Program: Announcing Gratipay on HackerOne"