Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 33eb5b0

Browse files
committed
added 2 new training videos from CS team
1 parent 0f58eb8 commit 33eb5b0

File tree

2 files changed

+7
-1
lines changed

2 files changed

+7
-1
lines changed

docs/programs/defining-scope.md

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ Identifier | How hackers will know that they are at the correct asset that you s
2525
Eligibility for Submission | Whether you want hackers to submit to reports about this asset. If you select "no", hackers will see the asset on a report form with a red warning and won't be able to submit reports marked for this asset.
2626
Eligibility for Bounty | Whether you intend on providing bounties for this asset or not. If you have a mixed Bug Bounty - Vulnerability Disclosure program, you'll want to explicitly mark the assets you will or will not pay for. This is also surfaced to hackers on both your team profile and the report submission form.
2727
[Environmental Score](environmental-score.html) | These metrics determine the [severity](severity.html) of the vulnerability for the asset. You can adjust the severity of each vulnerability submission based on the environment by specifying the maximum impact to Confidentiality, Integrity, or Availability of that asset's data.
28-
Asset Labels | Add specific labels to the different categories pertaining to the asset. You can add asset labels to these fields: Coding Language, Framework, Cloud and Infrastructure, Database, Content Management System, Country, Spoken Language, Cryptocurrency. <br><br>The labeled descriptors provide more granular data about the program and the assets associated with it. This helps with matching the right hackers to your program.
28+
Asset Labels | Add specific labels to the different categories pertaining to the asset. You can add asset labels to these fields: Coding Language, Framework, Cloud and Infrastructure, Database, Content Management System, Country, Spoken Language, Cryptocurrency. <br><br>The labeled descriptors provide more granular data about the program and the assets associated with it. This helps with matching the right hackers to your program.
2929
Instruction | If you have any detail descriptions or comments on the asset, this field will surface that on both your program profile page and your report submission form.
3030

3131
4. Click **Save**.
@@ -39,3 +39,6 @@ Instruction | If you have any detail descriptions or comments on the asset, thi
3939
* **Your reports will be tagged by the selected asset.**
4040
* You can sort through your reports by asset, such as differentiating the reports for your mobile app vs. your web app.
4141
* Do data analysis per domain - Is it time to switch your marketing site provider, because all your vulnerabilities stem from that area? Is one particular engineering team responsible for 90% of your Cross-Site Scripting vulnerabilities?
42+
43+
### Tutorial Video
44+
<iframe id="ytplayer" type="text/html" width="640" height="360" src="https://www.youtube-nocookie.com/embed/4gK2_OAmiwI" frameborder="0" allowfullscreen></iframe>

docs/programs/hacker-mediation.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -34,3 +34,6 @@ Requesting hacker mediation triggers the following actions:
3434
While HackerOne can't guarantee resolution or override a security team's assessment, hacker mediation has been used to successfully bring items to the security teams' attention, resulting in a more favorable outcome for everyone involved.
3535

3636
As a reminder, hacker mediation is a privilege that is reserved for hackers with 200 reputations point and signal ≥ 1. In most cases, HackerOne won't be able to mediate for reports that have been closed for over 3 months. Please respect the guidelines above and only request mediation if it's deemed absolutely necessary.
37+
38+
### Tutorial Video
39+
<iframe id="ytplayer" type="text/html" width="640" height="360" src="https://www.youtube-nocookie.com/embed/Ie5nuTJrMNA" frameborder="0" allowfullscreen></iframe>

0 commit comments

Comments
 (0)