Wunderite is committed to building secure software. We welcome security researchers to identify and responsibly disclose vulnerabilities in our web application, public APIs, and production infrastructure.
Eligible assets:
Examples of qualifying vulnerabilities:
Out-of-scope issues include:
Monetary rewards are offered for eligible findings, assessed case-by-case based on impact and severity.
Typical resolution SLAs:
To participate in the program, researchers must:
To report a vulnerability, email [email protected] with the following details:
Note: This is a private, non-public program. Please do not share or discuss vulnerabilities outside of direct communication with Wunderite.
We commit to:
Wunderite reserves the right to determine resolution priority, scope interpretation, and public disclosure timing.
When conducted in accordance with this policy, we consider vulnerability research to be:
Participants agree to indemnify Wunderite and its affiliates from any liability arising from participation. Unauthorized or malicious activity outside this policy may result in legal action.
We appreciate your efforts to help secure Wunderite. Your contributions support our mission to provide a safer and more reliable platform for everyone.
Last Updated: June 25, 2025th

We use cookies and similar technologies to enhance your experience, analyze traffic, and personalize content. By consenting, you allow us to process data such as browsing behavior or unique IDs. You can change or withdraw your consent anytime. Some site features may not function properly without cookies. For details, see our Privacy Policy.

WUNDERITE (WUNDER•ITE)
Portmanteau of the German “wunder” (miracle), and “underwrite”, the act of supporting a voyage by physically signing your name under a ship ‘s manifest