Credit Karma

Updated
  • $100 – $5,000 per vulnerability
  • Partial safe harbor

Scope Increase

Hey Everyone,

Fantastic news! Credit Karma has decided to include *.creditkarma.com into the scope of the program, with the exception of a few out of scope areas. Please see the new targets listed below, and the associated out of scope targets.

Now in scope:
*.creditkarma.com

Still out of scope:

  • https://www.creditkarma.com/all/advice
  • appsflyer.com
  • crashlytics.com
  • taplytics.com
  • https://www.creditkarma.com/article/*
  • https://www.creditkarma.com/reviews/

Happy Hunting!

Steve @ Bugcrowd