generated: '2026-07-18' method: searched probe: true source: well-known/devcycle-security.txt policy: - https://github.com/DevCycleHQ/.github/blob/main/.github/SECURITY.md contact: - mailto:security@devcycle.com disclosure_program: https://hackerone.com/dynatrace bug_bounty: false cve_numbering_authority: true notes: >- DevCycle welcomes responsible disclosure via security@devcycle.com and its SECURITY.md policy. As a Dynatrace company, coordinated disclosure runs through the Dynatrace HackerOne program (hackerone.com/dynatrace); there is no public paid bug bounty. DevCycle is a registered CVE Numbering Authority. evidence: - source: well-known/devcycle-security.txt kind: security.txt (harvested from api.devcycle.com/.well-known/security.txt) - source: https://devcycle.com/security kind: security page