generated: '2026-07-18' method: searched probe: true source: https://datavolo.io/bug-bounty-program/ program: name: Datavolo Bug Bounty Program type: in-house platform: none third_party_platform: false policy: - https://datavolo.io/bug-bounty-program/ - https://datavolo.io/bug-bounty-eligbility/ contact: - bugbounty@datavolo.io scope: in_scope: - docs.datavolo.io - app.datavolo.ai - cloud.datavolo.ai - Corporate websites and web applications - APIs and OSS code (Hatch NAR repository) out_of_scope: - Denial of service (DoS) attacks - CSRF on anonymous features - Version/banner disclosure - Outdated or end-of-life software - Theoretical vulnerabilities without proof of exploitability notes: >- Researchers report issues directly by email; no HackerOne/Bugcrowd/Intigriti platform is used. Current or former employees and contractors are ineligible. Strict confidentiality applies; external disclosure requires Datavolo consent. evidence: - source: https://datavolo.io/bug-bounty-program/ kind: bug-bounty-page keywords: [bug bounty, responsible disclosure, security contact] - source: https://datavolo.io/security kind: security-page