logo

‘An efficient way to uncover vulnerabilities’: Doctolib's five years in Bug Bounty

ID: d0004814-cd18-5647-882e-7bb3d68ca43c

STIX ID: report--d0004814-cd18-5647-882e-7bb3d68ca43c

Feed Name: YesWeHack Blog

Date Published: 2024-04-30

Date Updated: 2026-07-04

...
...

This interview with Doctolib security leadership outlines the evolution and practices of their bug bounty program—covering scope expansion to patient and practitioner platforms, an increased maximum bounty (€25,000), collaborative triage with YesWeHack, three special high-reward scenarios for critical findings, and a production "panic button" for researchers—presenting an informational overview rather than reporting any security incident.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.