SubMain Bug Bounty Program
Program Description
We are excited to launch a bug bounty program for SubMain products. Individuals across the globe can receive free Personal product licenses for submitting issues found in CodeIt.Right and GhostDoc, fully patched version of Visual Studio. For the bounty program, we request you submit bugs using the Bug Bounty Submission page
What constitutes an eligible submission?
The SubMain bug bounty program is looking to reward high-quality submissions that reflect the research that you put into your discovery. The goal of your report is to share your knowledge and expertise with SubMain developers and engineers so that they can quickly and efficiently understand and reproduce your finding. This way, they have the background and context to fix the issue.
Issue submissions provided to SubMain must meet the following criteria to be eligible for a reward:
- Identify an original and previously unreported issue that is within the scope and reproduces in our latest build on a fully patched version of Visual Studio
- Include a description of the issue and concise reproducibility steps that are easily understood. (This allows submissions to be processed as quickly as possible.)
Eligible Products
- CodeIt.Right - all editions
- GhostDoc - all commercial editions
- GhostDoc Community Edition
Scope
Latest released builds of the Eligible Products above and any Preview, Beta or RC build, public or private, of the upcoming release.
Out of Scope
- Issues that are confirmed as an issue with the particular user Visual Studio installation
Qualified Submissions
- One issue that has never been previously reported
- Or confirmation of three known issues (with the exception of the issues available publicly on the SubMain Community website)
Rewards
Individuals across the globe can receive free Personal product licenses for submitting issues found in CodeIt.Right and GhostDoc -
- One qualified submission can be redeemed for a GhostDoc Pro Personal license reward
- Two qualified submissions can be redeemed for a CodeIt.Right Personal Edition license reward
Ineligible Submissions
The aim of the bug bounty program to uncover significant issues with the product that bypassed our pre-release testing. While we encourage any submissions, the following are examples of the issues that will not earn a bounty reward under this program:
- Issues in anything earlier than the released builds of the Eligible Products above and any Preview, Beta or RC build, public or private, of the upcoming release
- Issues that are confirmed as an issue with the particular user Visual Studio installation
- Issues in user-generated content
- Issues requiring extensive or unlikely user actions
- Issues caused in or by third-party plugin in the particular user Visual Studio setup
- Issues that are a result of the encryption/spyware monitoring in the user setup or issues with license activation
Any other category of vulnerability that SubMain determines to be ineligible, in its sole discretion.
We reserve the right to reject any submission that we determine, in our sole discretion, falls into any of these categories of issues even if otherwise eligible for a bounty.
Thank you for participating in the SubMain Bug Bounty program!