Submit your finding through the form below. Your proof-of-concept files, reproduction steps, and any sensitive context reach the SendSafely security team encrypted on your device with OpenPGP/AES.
Our security team will rate all submissions using the Bugcrowd Vulnerability Rating Taxonomy.
Refer to our Bug Bounty page for the complete program rules and eligibility requirements for receiving a cash reward.
Questions? Send an email to support@sendsafely.com.
The bug reporting form uses the SendSafely Dropzone widget. Attachments are encrypted on your device with OpenPGP/AES, and the platform stores that content as ciphertext only.
Audited annually under SOC 2 Type 2. The same split-key architecture that protects every customer file protects your proof of concept.
Eligibility, scope, severity ratings, and standard payouts ($1,500 P1, $500 P2, $200 P3) are documented in the bug bounty program rules.