bounty_program

Pack: bug-bounty-programs · Connect: https://pipeworx.io/mcp (see Connect below for a single-pack URL)

No MCP client? Call it directly: GET https://gateway.pipeworx.io/v1/tools/bounty_program for the schema, then POST the same URL with its arguments for the data.

One bug-bounty program by platform + handle: bounty range, status, and scope assets where the platform publishes them without a login. YesWeHack returns a full severity x asset-value reward table; HackerOne returns real scope but no numeric reward table (not exposed publicly); Bugcrowd returns neither (login-walled) and says so.

Parameters

NameTypeRequiredDescription
platformstringyes
handlestringyesThe program’s slug/handle on that platform, e.g. “security” on HackerOne or “cryptobox-bug-bounty” on YesWeHack.

Example call

Arguments

{
  "platform": "yeswehack",
  "handle": "cryptobox-bug-bounty"
}

curl

curl -X POST https://gateway.pipeworx.io/bug-bounty-programs/mcp \
  -H 'Content-Type: application/json' \
  -d '{"jsonrpc":"2.0","id":1,"method":"tools/call","params":{"name":"bounty_program","arguments":{"platform":"yeswehack","handle":"cryptobox-bug-bounty"}}}'

TypeScript (@pipeworx/sdk)

import { Pipeworx } from '@pipeworx/sdk';
const pipeworx = new Pipeworx();

const result = await pipeworx.call('bounty_program', {
  "platform": "yeswehack",
  "handle": "cryptobox-bug-bounty"
});

Connect

Add this to your MCP client config — every tool in the catalog, including this one — or use one-click install buttons:

{
  "mcpServers": {
    "pipeworx": {
      "url": "https://pipeworx.io/mcp"
    }
  }
}
Connect to just the bug-bounty-programs pack
{
  "mcpServers": {
    "bug-bounty-programs": {
      "url": "https://gateway.pipeworx.io/bug-bounty-programs/mcp"
    }
  }
}

See Getting Started for client-specific install steps.

Regenerated from source · build October 8, 2026