Moneytree provides a personal finance management app that uses data aggregation to radically simplify your relationship with money. The service currently supports Japanese and Australian financial institutions and provides a Japanese & English language interface.
This program adheres to the Bugcrowd Vulnerability Rating Taxonomy for the prioritization/rating of findings.
NEW UPDATES TO OUT OF SCOPE TESTING ITEMS, PLEASE ADVISE
This program follows Bugcrowd’s standard disclosure terms.
For any testing issues (such as broken credentials, inaccessible application, or Bugcrowd Ninja email problems), please email support@bugcrowd.com. We will address your issue as soon as possible.
This program does not offer financial or point-based rewards for P5 — Informational findings. Learn more about Bugcrowd’s VRT.
Scope Type | Scope Name |
---|---|
android_application | Moneytree staging Android Mobile Application (see below) |
api | au-api-staging.getmoneytree.com |
api | jp-api-staging.getmoneytree.com |
api | myaccount-staging.getmoneytree.com |
ios_application | Moneytree iOS Mobile Application (production; see below) |
web_application | app-staging.getmoneytree.com |
web_application | wwws-staging.moneytree.jp/link/ |
web_application | wwws-staging.moneytree.jp/link/mobile/ |
web_application | wwws-staging.moneytree.jp/link/mobile/#/signup?client_id=38d99a6e8e9fc87c866f5aa82bdc2569c464b2323a55e0b28f658efa678e9623&redirect_uri=https://wwws-staging.moneytree.jp/link/mobile/callback&response_type=token&scope=guest_read+accounts_read+transactions_read+request_refresh |
web_application | https://engineering-staging.getmoneytree.com |
web_application | https://csv-uploader-staging.getmoneytree.com |
web_application | https://vault-staging.getmoneytree.com |
Scope Type | Scope Name |
---|---|
ios_application | Any production asset of Moneytree KK (excepting the iOS app) |
web_application | moneytree.jp |
web_application | getmoneytree.com |
The progam has been crawled by Firebounty on 2018-05-29 and updated on 2020-04-23, 28 reports have been received so far.
FireBounty © 2015-2024