Bugcrowd adds ‘flex’ pricing model to bug-bounty programs
Bugcrowd, the firm that offers a bug-bounty service program that brings together companies willing to pay to hear about serious software vulnerabilities and the security researchers that can find them, says it’s offering a new pricing model.
According to Bugcrowd CEO Casey Ellis, the “flex” pricing model is based on the idea that customers would share code they want to be examined by researchers for possible vulnerabilities and researchers that found bugs would share in a percentage of the total reward pool offered.
The “flex” program augments Bugcrowd’s other type of bug-research arrangements, such as monthly pricing to use Bugcrowd’s platform that brings together thousands of security researchers claiming they’ve discovered serious security holes that these customers might be willing to pay for. “You pay every time you learn something you don’t know,” he added.