Vulnerability Disclosure Program (VDP)

VDPs are meant for responsibly reporting vulnerabilities you encounter — not for actively hunting for fame or reputation. Even if you're just starting out, consider focusing on rewarded bug bounty programs instead.

ssa-vdp

BugcrowdView on Bugcrowd
RawAI Enhanced
5
In Scope
2
Out of Scope
In-Scope Assets (5)
Out-of-Scope Assets (2)
AssetCategoryBounty
Targets not expressly listed as In Scope are Out of ScopeOTHERNo
https://foia.ssa.govURLNo