exinity-bug-bounty-program

YesWeHackView on YesWeHack
RawAI Enhanced
18
In Scope
6
Out of Scope
In-Scope Assets (18)
AssetCategoryBountyQuick Links
https://api.boxwind.comURLYes
https://api.trade.alpari.com/URLYes
https://api.trade.fxtm.com/URLYes
https://app.nemo.moneyURLYes
https://app.nemo.money/nemoaiURLYes
https://apps.apple.com/ae/app/alpari-trading-app/id6740474696IOSYes-
https://apps.apple.com/ae/app/invest-trade-nemo-money/id6478511610IOSYes-
https://apps.apple.com/au/app/fxtm-trading-app/id6738046376IOSYes-
https://boxwind.com/URLYes
https://buzz.nemo.money/URLYes
https://my.boxwind.com/URLYes
https://nemo.money/URLYes
https://play.google.com/store/apps/details?id=com.exinity.alpariANDROIDYes
https://play.google.com/store/apps/details?id=com.exinity.fxtmANDROIDYes
https://play.google.com/store/apps/details?id=com.exinity.nemoANDROIDYes
https://trade.alpari.com/URLYes
https://trade.boxwind.com/URLYes
https://trade.fxtm.com/URLYes
Out-of-Scope Assets (6)
AssetCategoryBounty
Any findings obtained via unethical research practices, including spam, denial-of-service, social engineering, brute force, physical access.OTHERYes
Any services or applications not explicitly listed in the program scope.OTHERYes
Any vulnerability detected by automated scanner.OTHERYes
Any vulnerability discovered on third-party services: KYC providers, email services etc.OTHERYes
Any vulnerability without working PoC or demonstrated impact on Exinity-owned/controlled assets.OTHERYes
Exceptions: CRITICAL vulnerabilities discovered on Exinity-owned/controlled assets outside the defined program scope may be reported. Abuse of this exception through low-quality or non-critical out-of-scope findings may result in removal from the program.OTHERYes