At We-Connect, user data security is paramount. We build our software and infrastructure with this goal at the forefront. That's why we're excited to welcome the security community to help us identify and fix vulnerabilities.
We encourage everyone to test the security of our platform. If you want to join, here are some guidelines:
Follow the Terms of Service (ToS) and avoid disrupting our service or using automated testing tools.
Only interact with your account and avoid any actions affecting other users' data.
If you discover a security vulnerability, report it immediately.
Don't disclose vulnerability details until we've fixed the issue.
We award a single bounty per vulnerability. The first valid report received qualifies for the reward.
We're interested in any security exploit, but we offer increased rewards for the following:
Denial-of-Service (DoS) or brute-force attacks
Mixed-content scripts
Social engineering attempts
Theoretical vulnerabilities
"Best practice" issues
Known theoretical vulnerabilities deemed low-risk
Accessing device or location information from team members
Our flexible reward system doesn't have a fixed limit. We value the severity and creativity of your findings. Rewards depend solely on the vulnerability's impact and are distributed via PayPal after the fix is deployed. Please note, PayPal transaction fees are deducted from the awarded amount.
Submit your report here. We respond to all submissions within a few days. Once the patch is live, you'll receive your bounty through PayPal.
If you have any questions regarding the program, please contact us at security@we-connect.io
It's easy to get started
Start connecting with new prospects in just a few clicks.
© 2025 We-Connect. All Rights Reserved.