Vulnerability Disclosure Program (VDP)

VDPs are meant for responsibly reporting vulnerabilities you encounter — not for actively hunting for fame or reputation. Even if you're just starting out, consider focusing on rewarded bug bounty programs instead.

wonder-vdp

HackerOneView on HackerOne
RawAI Enhanced
31
In Scope
4
Out of Scope
In-Scope Assets (31)
AssetCategoryBountyQuick Links
*.grubhub.comWILDCARDNo
*.jo30.comWILDCARDNo
*.seamless.comWILDCARDNo
*.tapingo.comWILDCARDNo
*.tastemade.comWILDCARDNo
302920553IOSNo-
971197898IOSNo-
976642810IOSNo-
api-merchant-gtm.grubhub.com URLNo
auth.grubhub.comURLNo
com.blueapron.blueapron.releaseANDROIDNo
com.grubhub.androidANDROIDNo
com.tastemade.appANDROIDNo
http://www.blueapron.com/apiURLNo
http://www.blueapron.com/graphqlURLNo
https://*.wonder.comWILDCARDNo
https://blog.blueapron.com/URLNo
https://core-api.production.claim.coURLNo
https://core-api.staging.claim.coURLNo
https://cs-dashboard.production.claim.co/graphqlURLNo
https://cs-dashboard.staging.claim.co/graphqlURLNo
https://order.wonder.comURLNo
restaurant.grubhub.comURLNo
sensor.grubhub.comURLNo
tastemade.comURLNo
www.blueapron.comURLNo
www.grubhub.comURLNo
www.jo30.comURLNo
www.menupages.comURLNo
www.seamless.comURLNo
www.tapingo.comURLNo
Out-of-Scope Assets (4)