Here is a breakdown of the Engagement Brief Header information:
-
Type of Engagement:
- On-Demand Bug Bounty
- Pen Test
- Private Bug Bounty
- Public Bug Bounty
- Vulnerability Disclosure
- Engagement Title: Name of the engagement.
- Tagline: Description of the targets and purpose the engagement.
- Industry: The industry that best matches the engagement.
- Collaboration: Indicates if Collaborations are enabled for the engagement.
- Safe Harbor: The level of legal protection related to security research.
-
Scope Rating: A scope rank rating is applied to indicate the depth and size of scope available for testing. The rating system is composed of four criteria:
-
>
5 targets -
>=
10 targets -
>
2 wild card domain targets (example; *.domain.com) -
>=
4 different categories of targetFor each criteria met, the scope rank of the engagement is increased by one, which is displayed as a scope icon on the engagement brief.
-
- Testing Period: The duration of the testing period.
- Status: Engagement status and timestamp of when the status was applied to the engagement.
- Submit report: To submit a vulnerability to the engagement, click on the Submit report button.
- Rate the engagement: You can rate your experience on an engagement by clicking on the ‘thumbs up’ or ‘thumbs down’ icons.
- Follow the engagement: Click on the star icon to follow and get updates about the engagement.
- Share the engagement: If the engagement is public, you can share the engagement with other researchers.
- Hide engagement: If you wish you can hide the engagement from your view.
Note: For Pen Test engagements you will also see a Complete Methodology button displayed in the header.