From 1c175b9589fa9b98a982e8999f10170f9ca89506 Mon Sep 17 00:00:00 2001 From: Pierre RAMBAUD Date: Thu, 17 Dec 2020 11:15:13 +0100 Subject: [PATCH] Add the Bug Bounty Program in the README --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 7d7f407f605c6..158dcc1e22de0 100644 --- a/README.md +++ b/README.md @@ -108,7 +108,7 @@ Responsible (and private) disclosure is a standard practice when someone encount The PrestaShop team tries to be very proactive when preventing security problems. Even so, critical issues might surface without notice. -This is why we have set up the [security@prestashop.com](mailto:security@prestashop.com) email address: anyone can privately contact us with all the details about issues that affect the security of PrestaShop merchants or customers. Our security team will answer you, and discuss of a timeframe for your publication of the details. +This is why we have set up a [Bug Bounty Program](https://yeswehack.com/programs/prestashop) where anyone can privately contact us with all the details about issues that affect the security of PrestaShop merchants or customers. Our security team will answer you, and discuss of a timeframe for your publication of the details. Understanding a security issue means knowing how the attacker got in and hacked the site. If you have those details, then please do contact us privately about it (and please do not publish those details before we answer). If you do not know how the attacker got in, please ask for help on the support forums.