Talk to support
Frequently asked questions
Find answers to your questions instantly. Need more guidance? Dive into our extensive documentation for all your queries.
What is Hacklio?
Hacklio is a bug bounty platform connecting ethical hackers with companies to discover and fix vulnerabilities.
Who can join Hacklio as a hacker?
Any ethical hacker or researcher, beginner or expert, can join Hacklio and participate in programs.
Is Hacklio free for hackers?
Yes, it is free to join Hacklio as a hacker. You earn rewards for valid vulnerability reports.
How do companies benefit from Hacklio?
Hacklio helps companies find security issues before attackers do by leveraging a global hacker community.
How does the bug bounty process work?
Hackers submit reports via Hacklio. Our team or the company verifies and rewards based on impact.
What types of programs are available?
Hacklio offers public and private bug bounty programs across various industries and technologies.
How are rewards determined?
Rewards are based on the severity and impact of each valid report as defined by program policies.
How long does it take to get paid?
Payments are processed shortly after report validation, usually within a few business days.
Do hackers need to sign an NDA?
Only private programs may require an NDA before participation. Public programs usually do not.
Can companies customize their program?
Yes, companies can set scope, rewards, rules, and visibility to fit their security goals.
Is Hacklio secure for data sharing?
Hacklio applies strict security standards to protect all user and company data.
What kind of vulnerabilities can I report?
Any vulnerability within scope, such as XSS, SQLi, IDOR, and more, can be reported.
How do I get started as a hacker?
Create an account, verify your profile, and start joining bounty programs.
Can companies run private programs?
Yes, Hacklio supports private programs with invited researchers for sensitive assets.
Is there support for hackers and companies?
Hacklio offers dedicated support for both hackers and companies.
How do companies handle reports?
Reports are validated by Hacklio’s team or the company security team.
What is the difference between public and private programs?
Public programs are open to all verified hackers, private ones are invite-only.
Can hackers participate globally?
Yes, Hacklio welcomes hackers from all around the world.
Are there legal risks for ethical hackers?
Programs provide safe harbor policies for good-faith researchers acting within scope.
How do companies join Hacklio?
Companies can contact Hacklio to design and launch a custom bounty program.