bounty_program
Pack: bug-bounty-programs · Connect: https://pipeworx.io/mcp (see Connect below for a single-pack URL)
No MCP client? Call it directly: GET https://gateway.pipeworx.io/v1/tools/bounty_program for the schema, then POST the same URL with its arguments for the data.
One bug-bounty program by platform + handle: bounty range, status, and scope assets where the platform publishes them without a login. YesWeHack returns a full severity x asset-value reward table; HackerOne returns real scope but no numeric reward table (not exposed publicly); Bugcrowd returns neither (login-walled) and says so.
Parameters
| Name | Type | Required | Description |
|---|---|---|---|
platform | string | yes | |
handle | string | yes | The program’s slug/handle on that platform, e.g. “security” on HackerOne or “cryptobox-bug-bounty” on YesWeHack. |
Example call
Arguments
{
"platform": "yeswehack",
"handle": "cryptobox-bug-bounty"
}
curl
curl -X POST https://gateway.pipeworx.io/bug-bounty-programs/mcp \
-H 'Content-Type: application/json' \
-d '{"jsonrpc":"2.0","id":1,"method":"tools/call","params":{"name":"bounty_program","arguments":{"platform":"yeswehack","handle":"cryptobox-bug-bounty"}}}'
TypeScript (@pipeworx/sdk)
import { Pipeworx } from '@pipeworx/sdk';
const pipeworx = new Pipeworx();
const result = await pipeworx.call('bounty_program', {
"platform": "yeswehack",
"handle": "cryptobox-bug-bounty"
});
Connect
Add this to your MCP client config — every tool in the catalog, including this one — or use one-click install buttons:
{
"mcpServers": {
"pipeworx": {
"url": "https://pipeworx.io/mcp"
}
}
}
Connect to just the bug-bounty-programs pack
{
"mcpServers": {
"bug-bounty-programs": {
"url": "https://gateway.pipeworx.io/bug-bounty-programs/mcp"
}
}
}
See Getting Started for client-specific install steps.