You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Huntr appears to use a leadership board mechanism that scores based on raw amounts of dollars earned in 30/90/all-time periods of time. From time-to-time a researcher finds a vulnerability in a repository that has been depleted of funds, but yet wants to still submit the issue. The platform does not appear to have a mechanism in place that tracks or has a comparable competition model as the current leaderboard structure.
Many of us are submitting vulnerabilities either for CVEs, for experience, or to simply help secure repositories. I believe it would be advantageous for researchers to have an additional leaderboard that reflects the number of valid reports submitted in the same time frame. I also believe that it would show the overall altruism of Huntr users who choose to use their time to help secure repositories that otherwise have no financial benefit.
My request, and recommendation, would be to modify the current leadership board structure to include a separate category that covers the overall submission of VALID reports in the same time frames. Identifying users and their desire to help regardless of payout would be an incredible way to show appreciation to those users.
The text was updated successfully, but these errors were encountered:
Huntr appears to use a leadership board mechanism that scores based on raw amounts of dollars earned in 30/90/all-time periods of time. From time-to-time a researcher finds a vulnerability in a repository that has been depleted of funds, but yet wants to still submit the issue. The platform does not appear to have a mechanism in place that tracks or has a comparable competition model as the current leaderboard structure.
Many of us are submitting vulnerabilities either for CVEs, for experience, or to simply help secure repositories. I believe it would be advantageous for researchers to have an additional leaderboard that reflects the number of valid reports submitted in the same time frame. I also believe that it would show the overall altruism of Huntr users who choose to use their time to help secure repositories that otherwise have no financial benefit.
My request, and recommendation, would be to modify the current leadership board structure to include a separate category that covers the overall submission of VALID reports in the same time frames. Identifying users and their desire to help regardless of payout would be an incredible way to show appreciation to those users.
The text was updated successfully, but these errors were encountered: