Privacy Policy


Privacy Policy

Privacy Policy for BugBounty Platform

1. Purpose:

This privacy policy is incorporated by reference into the terms of service of the Bougbounty Platform("Terms"). The terms "Bugbounty Platform ," "we," "us," and "our" refer to the Bougbounty Platform, our subsidiaries, and our affiliate companies. This privacy policy explains our online and offline information practices, the types of information we may collect, how we intend to use and share that information, and how you can opt-out of using or correct or change this information.

2. Scope:

This privacy policy applies to personal information processed by Bougbounty Platform in the context of our business, including on Bougbounty Platform sites (each referred to as a "Site") and applications, forums, blogs, and other online or offline services (collectively referred to as the "Services"). All individuals whose responsibilities include the processing of personal information on behalf of Bougbounty Platform are expected to protect that data by adherence to this privacy policy. This privacy policy is intended to meet worldwide privacy requirements. Compliance with data protection laws and regulations may be subject to periodic review.

3. Transparency / Notice - Types of Personal Information We Collect and How We Use It

The types of personal information we collect, and our privacy practices depend on the nature of the relationship you have with Bougbounty Platform and the requirements of applicable law. Some of the ways that Bougbounty Platform may collect personal information include:

· You may provide personal information directly to Bougbounty Platform through interacting with the Services, participating in surveys, requesting services or information.

· As you navigate through the Services, certain passive information may also be collected about your visit, including through cookies and similar technologies as described below.

We strive to only collect personal information that is relevant for the purposes of processing. Below are the ways we collect personal information and how we use it. It's true that we collect information, but without impacting the third party as we mentioned, and we reiterate that it's not a requirement for us to collect negative information about your visit, as there is a procedure followed for that.

3.1. Types of Personal Information We Collect

Bugbounty platform collects personal information related to its current, potential, and former clients, users, visitors, and guests (collectively referred to as "individuals").

This is for the sake of transparency and protection for both parties. All information related to the mentioned individuals, which will be collected is not for the personal benefit of the site but for the public interest.

· Information You Provide to Us Directly : When you use the services or engage in certain activities, such as registering for an account on Bugbounty Platform, responding to surveys, requesting services or information, or contacting us directly, we may ask you to provide some or all of the following types of information:

· User Profile: When creating a profile, Bugbounty platform may collect some personal information, including your name, contact details, photographs, examples of your work, information about past work both within and outside the service, skills, and other information, including your username ("profile").

· Your registered information will not be visible to the public to maintain privacy and confidentiality.

· Communicating with Us: We may collect personal information from you, such as email address, phone number, or postal address when you choose to request information about our services, subscribe to the Bugbounty platform newsletter, request customer support, technical support, or communicate with us in any other way.

· This is for credibility and the policies followed to maintain the interests of both parties and not to leak the information of the beneficiary of this service for general use.

  • Surveys: From time to time, we may contact you or send you an email to participate in online surveys. If you decide to participate, you may be asked to provide certain information, which may include personal information. All information collected from your participation in our surveys is provided voluntarily. We may use this information to improve our products, websites, and services in any way that complies with the policies provided here, and some policies will change for the public interest and for the development of the product or content offered.

· Posting on the Services: Bugbounty platform may offer publicly accessible pages, blogs, private messages, or community forums. You should be aware that when you disclose information about yourself on Bugbounty platform pages and blogs, private messages, and community forums, the Services will collect the information you provide in such submissions, including any personal information. If you choose to submit content to any public area of the Services, such content will be considered "public" and will be subject to the privacy policies outlined here, including regarding intellectual property rights, if any. All parties are required to use a username for personal protection, but the Bugbounty platform management has all the information about the person participating in its pages.

· Automated Data Collection: We may automatically collect information through our services or other methods for analyzing online networks by our licensed systems under the laws of telecommunications and information technology in Oman. This may include your IP address, cookie identifiers, mobile device identifier, mobile advertising identifiers, assigned device identifier, other device identifiers that are automatically assigned to your computer, mobile device, or other device when you access the Internet, browser type, language, geo-location information, device type, operating system, Internet service provider, pages you visit before and after using the services, the amount of time you spend on each page, information about the links you click, and other actions taken through the use of our services, preferences.

  • Cookies and Pixel Tags/ Web Beacons/ Electronic Network Signals and Analytics Information : In addition to third-party providers that provide content or advertisements or other functions on our services, we may also use cookies, pixel tags, local storage, and other technologies to automatically collect information through the services. We use technologies that are essentially small data files placed on your computer or mobile device or other device ("device") that allow us to record certain pieces of information when you visit or interact with our sites, services, applications, or messaging tools.
  • Cookies are text files that are placed in your browser's memory to store your preferences. Most browsers allow you to block and delete cookies. However, if you do so, the services may not function properly like other well-known sites, and these are international laws on browsing the Internet to protect all parties.
  • Pixel tags or web beacons: A pixel tag (also known as a web beacon) is a piece of code embedded on the Services that collects information about users' engagement on that web page. The tag can be retrieved, for example, when a user visits a particular web page.
  • Embedded scripts: We and our marketing and analytics partners may also employ software programming or code that may be embedded into some of our web pages or into third-party content or advertisements that are presented to you. These embedded scripts are designed to collect information about your interactions with the Services. This information is collected in a way that complies with applicable law and international laws.

· Information provided through services. You agree that the BugBounty platform has the freedom to use the content of any communications you provide through the services, including any ideas, inventions, concepts, techniques, or knowledge disclosed therein, for any purpose, including development, manufacturing, or marketing of goods or services. The BugBounty platform will not disclose your name or otherwise publish the fact that you have provided us with materials or other information unless: (a) you grant us permission to do so, or it is necessary as part of the services, such as facilitating payment to you as a researcher; (b) we first send you a notice stating that the materials or other information you submit to a particular area of the platform will be published or used in another way with your name on it, or (c) we are required to do so by law. This protects the intellectual property of the involved party and safeguards against legal issues, and we do not forget our success with you, as well as the policies we have put in place that protect all parties.

· Information from other sources. We may receive information about you from other sources, including through third-party services and organizations to supplement the information you provide. For example, if you access or use our services through a third-party app, we may collect information about you from the third-party app through your privacy settings or other means. This supplementary information allows us to verify the information you have provided to the Bug Bounty platform and enhance our ability to provide you with information about our business, products, and services. If you collect information from external sources to supplement your information, you must obtain permission from the second or external party to ensure you are on the right side and do not incur any local or international penalties, as the company will not face any problems in this regard.

3.2. How the Bug Bounty platform uses your information

We obtain personal information about individuals, retain it, use it, and process it for various permissible business purposes, including:

• Providing requested products, services, or information. The Bug Bounty platform may use information about you to provide services and fulfill requests related to products or information as agreed upon, as you have read mutually acceptable terms, including:

• Managing individual information and accounts generally.

• Responding to questions, comments, and other requests.

• Evaluating weaknesses and other issues discovered during the use of services.

• Providing access to certain areas, functions, and features of Bug Bounty platform services

• Contacting you to respond to customer support or technical support requests.

• Administrative purposes: The Bug Bounty platform may use some of your personal information for its administrative purposes as agreed upon and as provided for in the laws, including:

• Measuring interest in Bug Bounty platform services.

• Developing new products and services.

• Ensuring internal quality control.

• Verifying individual identity.

• Communicating about individual accounts and activities on Bug Bounty platform services, and in accordance with Bug Bounty platform's discretion and changes to any policy of Bug Bounty platform.

• Sending an email to the email address you provide us to verify your account and for informational and operational purposes, such as account management, customer service, or system maintenance.

• Processing payment transactions for purchased products or services.

• Processing requests and transactions.

• Preventing activities that may be prohibited or illegal.

• Enforcing our terms.

• Marketing Bug Bounty platform products and services.

• Bug Bounty platform may use personal information to provide you with materials about offers, products, and services that may be of interest to you, including new content or services. Bug Bounty platform may provide you with these materials via phone, regular mail, fax, email, or other permissible means under applicable law. These uses include, for example:

ü Designing content and advertisements and offers.

ü Notifying you about offers, products, and services that may be of interest to you,

ü Providing services to you and our sponsors.

ü For other purposes disclosed at the time individuals provide personal information, or

ü Otherwise with individuals' consent.

ü You may contact us at any time to opt-out of the use of your personal information for marketing purposes, as further described in Section (5) below.

• Research and development. The Bug Bounty platform may use personal information by itself or in conjunction with information obtained from other sources to assist us in providing our current products and services optimally or developing new products and services. What is meant by the other reliable sources that we have the right to use and allowed by international technology and information laws, but as for development and research, we have our own methods so that the service is more distinctive than others, and this is the secret of the success of this site and its positive effects."

• Direct mail, email, and outbound telephone marketing. Individuals who provide us with personal information or whose personal information we obtain from third parties may receive email messages, newsletters, postal mail, or periodic phone calls from us containing information about Bug Bounty Platform or products and services of our business partners, as well as upcoming special offers/events that we believe may be of interest. We offer an option to opt out of these communications at no cost to the individual by following the instructions provided in section (5) below.

• Services via mobile devices. From time to time, Bug Bounty Platform may offer services specifically designed to be compatible with and used on mobile devices. Bug Bounty Platform may collect certain information sent by your mobile device when you use these services, such as device ID, user settings, location information, mobile carrier, and your device's operating system. Mobile versions of Bug Bounty Platform services may require users to log in with their accounts. In such cases, information related to the use of mobile versions of the services may be linked to accounts. Additionally, Bug Bounty Platform may enable individuals to download applications or other user interface elements or tools for use on mobile devices or other computers. Some of these tools may store information on mobile devices or other devices. These tools may transfer personal information to Bug Bounty Platform to allow individuals to access their accounts and enable Bug Bounty Platform to track the use of these tools. Some of these tools may allow users to send reports and other information via email from the tool. Bug Bounty Platform may also use personal or non-personal information sent to Bug Bounty Platform to enhance these tools or develop new tools, as explained in this Privacy Policy or in other notifications provided by Bug Bounty Platform.

• Use of anonymous and aggregated information. Bug Bounty Platform may use personal and other information about you to create anonymous and aggregated information, such as unspecified demographic information, unspecified source location information, information about the computer or device you use to access Bug Bounty Platform services, or other analytics that we create. Anonymous and aggregated information is used for a variety of purposes, including measuring visitor interest and use across various parts or features of the services and using it. Anonymous and aggregated information is not personal information, and Bug Bounty Platform may use this information in several ways, including research and internal analysis, analytics, and other legally permissible purposes. We may share this information within Bug Bounty Platform and with third parties (service recipients or those who want to benefit from it) for our or their purposes in the form of anonymous and aggregated information designed to prevent anyone from identifying you.

• Sharing content with friends or colleagues. BugBounty Platform services may offer various tools and functions for sharing content. Our referral services may allow you to redirect or share specific content with a friend or colleague, such as an email inviting your friend to use our services. The email addresses you provide for a friend or colleague to send the content or link you requested to your friend or colleague will be used to send the content or link to your friend or colleague, but it will not be collected or used in any other way by BugBounty Platform or any other third party for any other purpose.

• Other uses: BugBounty Platform may use personal information that we have a legitimate interest in, such as network and information security, direct marketing, disclosure to subsidiaries, research (including marketing research), fraud prevention, or any other purpose disclosed to you at the time you provide personal information or with your consent.

Use of automatic collection techniques. Our use of technology falls into the following general categories:

· Operationally necessary. We may use cookies, electronic network signals, or similar technologies that are necessary to operate our websites, services, applications, and tools. This includes technologies that allow you to access our websites, services, applications, and tools, required to identify irregular site behavior, prevent fraudulent activity, improve security, or that allow you to use our features such as shopping carts or saved searches.

· Performance-related. We may use cookies, electronic network signals, or similar technologies to assess the performance of our websites, applications, services, and tools to measure the performance of our online sites and the content within them, as part of our analytical practices to help us understand how visitors use our online sites, determine if you have interacted with our messages, and determine if you have viewed an element or link, or to improve the content of our online network sites, applications, services, or tools.

· Relevant advertising. We may use first-party or third-party cookies and electronic network signals to provide content, including ads related to your interests, on our sites or third-party sites. This includes using technologies to understand the interest you receive from advertisements and the content delivered to you, such as whether you have clicked on an advertisement.

"If you wish to unsubscribe from the technologies we use in our services, you can do so by blocking, deleting, or disabling them as allowed by your browser or device.

3.3. Third-Party Websites and Social Media Platforms

Our services may contain links to other electronic network sites, and these other electronic network sites may reference or be linked to our services. We do not control these areas and other sites, and we do not endorse bug bounty platform or make any commitments or statements regarding other electronic network sites or social media platforms of third parties. We encourage our users to read the privacy policies of each electronic network site and any application they interact with. We do not endorse, review, or approve, and we are not responsible for the privacy practices or content of such sites or other applications. Visiting these sites or other applications is at your own risk.

Our services may include a bug bounty platform that offers blogs, community forums, or private messaging features available to the public. The services may also include links and interactive features with various social media platforms (e.g., tools). If you are already using these underlying systems, cookies may be set on your device when using our website or other services. You should be aware that personal information you voluntarily include and transmit online in a blog, chat room, social media platform, or an open forum may be viewed and used by others without any restrictions. We cannot control such uses of your information when interacting with a social media platform, and by using such services, you assume the risk of your personal information being exposed and used by third parties for various purposes.

3.4. Third-Party Payment Processing:

If you use the services to make, receive, or facilitate payments related to the services, we and third-party applications may collect some financial information from you for transaction processing, including your name, email address, postal address, financial account information, and other billing information. We comply with local and international laws to maintain trust and credibility between us.

4. Online Transfers - Platform Equivalence Bug Bounty may disclose your information:

4.1. Information We Share

We may share your information as described in this Privacy Policy (e.g., with our external service providers and for legal compliance and to protect our rights and properties) or with your permission.

• We use vendors and service providers. We may share any information we receive with vendors and service providers. Types of service providers (processors) to whom we entrust personal information include service providers for the following purposes:

1. Providing information technology and related services.

2. Providing the information and services you requested.

3. Processing payment transactions.

4. Customer service activities.

5. In connection with providing services.

• Bugbounty Platform has entered appropriate contracts with service providers that prohibit them from using or disclosing personal information except as necessary to perform services on our behalf or to comply with legal requirements.

• Business Partners. Bugbounty Platfrom may occasionally share personal information with our business partners and affiliates for our internal business purposes and our affiliates' internal business purposes or to provide you with a product or service you have requested and to share information that can be shared internally or externally.

• Bug Bounty Platform may also provide personal information to business partners with whom we jointly offer products or services or whose products or services we believe may be of interest to you. In such cases, our business partner's name will appear with Bug Bounty Platform. Bug Bounty Platform requests our subsidiaries and business partners to agree in writing to maintain the confidentiality and security of the personal information they hold on our behalf and not to use it for any purpose other than the purpose for which Bug Bounty Platform provided it to them.

• Content visible to others. When creating a profile or posting content on the services, this information may be visible to others. We are not responsible for the privacy practices of other users who will view and use the posted information, the intended visual content that can be traded, agreed upon, required by local and international law.

• Marketing - Interest-Based Ads and Third-Party Marketing. Through our services, Bug Bounty Platform may allow third-party advertising partners to set tracking mechanisms (e.g., cookies) to collect information about your activities (e.g., your IP address, pages you visit, and the time of day). We may also share such information, which is de-identified, with third-party advertising partners. These advertising partners may use this information (and personal information, such as demographic information and past purchase history) that we share with them to present targeted advertisements when you visit electronic network sites related to Bug Bounty Platform within their networks. This practice is usually referred to as "interest-based advertising" or "personalized advertising." If you prefer not to share your personal information with third-party advertising partners, you can opt-out of this sharing at no cost by following the instructions in Section (5) below."

• Disclosure for Your Protection or Ours (e.g., as required by law and similar disclosures): We can access your personal information, account information, and other content, and preserve and disclose them if we believe that doing so is required or appropriate for the following:

1. Complying with law enforcement requests or legal processes, such as a court order or subpoena.

2. Responding to your requests.

3. Protecting your rights, property, safety, ours, or others.

4. Enforcing the policies or contracts of the vulnerability reward platform.

5. Collecting due amounts for the vulnerability reward platform.

6. When we believe, in good faith, that disclosure is necessary or advisable concerning physical harm, financial loss, or related to the investigation or prosecution of suspected or actual unlawful activity.

7. If we believe, in good faith, that such disclosure is necessary or desirable otherwise.

Additionally, from time to time, server logs may be reviewed for security purposes—for example, to detect unauthorized activity in the services. In such cases, server log data containing internet protocol addresses may be shared with legal authorities to identify users in connection with their involvement in unauthorized activities.

• Mergers, Sales, or Other Asset Transfers: If we are involved in a merger, acquisition, due diligence, reorganization, bankruptcy, receivership, sale of the company's assets, or transfer of the service to another provider, your information may be sold or transferred as part of these transactions as permitted by law and the contract. In such a case, the vulnerability reward platform will seek to direct the transferee to use the personal information in a manner consistent with the applicable privacy policy in place when this personal information was collected, and the subscriber or information subject with us will know all the details during the ownership transfer or merger and is not obliged to continue or disclose their information, all of which is done after an agreement between the parties.

4.2. International Data Transfers:

All personal information collected, obtained, processed, and stored can be transferred anywhere in the world, in the cloud, on our servers, on servers of our subsidiary companies, or on servers of our service providers to provide services. Your personal information may be available to law enforcement or other authorities upon legal request. Where required by law, international data transfer operations will be supported by appropriate mechanisms. We seek to engage external service providers who implement data protection safeguards in line with the general data protection regulation, such as implementing standard contractual clauses or binding corporate rules. However, now, we must comply with Omani law and host data internally, for example with D2C, and not leak any data unless it is necessary regarding intellectual property theft or unauthorized network access.

5. Your Choices:

5.1. General: You may have the right to object to and unsubscribe from specific uses and disclosures of your personal information. When you consent to the processing of your personal information by the vulnerability reward platform, you can withdraw this consent at any time and unsubscribe from further processing by contacting the vulnerability reward platform.

5.2. Email and Phone Communications: If you receive an unwanted email from us, you can use the unsubscribe link provided at the bottom of the email to opt-out of receiving future email messages. We will process your request within a reasonable timeframe after receiving it. Please note that you will continue to receive transaction-related emails regarding products or services you have requested. We may also send you some non-promotional communications about the vulnerability reward platform and our services, and you will not be able to unsubscribe from these communications (e.g., communications related to updates to our terms or this privacy policy). However, if you unsubscribe from us completely, you will not receive any news or updates related to the vulnerability reward platform as agreed upon between us in the terms.

5.3. "Do Not Track": "Do Not Track" is a privacy preference that users can set in certain web browsers. "Do Not Track" is a way for users to inform websites and online services that they do not want certain information about their visits to websites or online services to be collected over time and across websites or online services. Please note that we do not respond to "Do Not Track" signals or similar mechanisms that are transmitted by web browsers.

5.4. Cookies and Interest-Based Advertising: As mentioned above, you can disable or restrict the placement of technologies on your device or remove them by modifying your preferences as allowed by your browser or device. Please note that cookie-based opt-outs are not effective in mobile applications. However, you can opt-out of personalized ads for some mobile apps by following the instructions we provide to you in our future posts for everyone's benefit. The text appears to contain privacy policy information, terms of use, and data protection details for a service or platform.

6. Your Privacy Rights

According to applicable law, you may have the right to:

1. Request confirmation of whether we process your personal information.

2. Obtain access to your personal information or a copy of it.

3. Receive an electronic copy of the personal information you have provided to us or request us to send that information to another company ("data portability right").

4. Restrict our use of your personal information.

5. Seek correction or amendment of inaccurate, incorrect, incomplete, or improperly processed personal information.

6. Withdraw your consent.

7. Request the erasure of personal information we hold about you, subject to certain legal exceptions.

Where permitted by applicable law, you can send an email to info@bugbounty.om or use any of the methods outlined in this privacy policy to exercise your rights regarding personal information. Please include your full name, your email address associated with your account, and a detailed description of your data request. These requests will be processed in accordance with applicable laws. To protect your privacy, the Bug Bounty platform will take reasonable commercial steps to verify your identity before granting access to or making any changes to your personal information.

7. Data Retention

The Bug Bounty platform retains the personal information we receive as described in this privacy policy for as long as you use our services or as necessary to fulfill the purpose(s) for which it was collected, provide our services, resolve disputes, establish legal defenses, conduct audits, pursue legitimate business purposes, enforce our agreements, and comply with applicable laws.

8. Information Security

We take necessary steps to ensure the secure treatment of your information in accordance with this privacy policy. Internet security cannot be guaranteed 100%, and we will use all tools and personnel to keep the information safe, as all the information on our site is valuable and must be fully preserved. By using the services or providing us with personal information, you agree that we may contact you electronically regarding security, privacy, and administrative matters related to your use of the services. If we become aware of a security breach, we may attempt to notify you electronically by posting a notice on the services or sending an email to you. You may have a legal right to receive this notice in writing.

9. Children's Privacy

The services are not directed to children under the age of thirteen (13), and the Bug Bounty platform does not knowingly collect personal information from children under the age of thirteen (13). If you become aware that your child has provided us with personal information without your consent, you can alert us at info@bugbounty.om , and if we learn that we have collected any personal information from children under the age of thirteen (13), we will take immediate steps to delete such information. Parents should also monitor their children, as repeated violations may result in the matter being referred to the appropriate authorities.

10. Regulatory Oversight

If you reside in Oman, you have the right to file a complaint with a relevant authority, such as the Public Prosecution or the Oman National CERT if you believe our processing of your personal information violates applicable law.

11. Contact Us

If you have any questions about our privacy practices or this privacy policy, please contact the Bug Bounty platform via the following email info@bugbounty.om

12. Other Rights and Important Information

12.1. Changes to Our Privacy Policy and Practices

This privacy policy may change from time to time. You understand and agree that you will be considered to have accepted the updated privacy policy if you continue to use the services after the updated privacy policy is published on the services. If you do not agree with any part of the privacy policy at any time, you should immediately stop using the services.

• Review of Privacy Policy: We may review this privacy policy at our discretion, so please review it regularly. If you continue to visit this site and use the services available to you after these changes are made, you are deemed to have agreed to the changes.

• Posting of Modified Privacy Policy: If there are any material changes to this privacy policy, the Bug Bounty platform will notify you by email or as required by law. We will post any amendments to this privacy policy on this website, and the modified version will be effective immediately upon posting (or as required by law). If you are concerned about how your information is used, please bookmark this page and regularly review this privacy policy.

• New Uses of Personal Information: In addition, before we use personal information for any new purpose not originally authorized by you, we will seek to provide information about the new purpose and give you the opportunity to opt out. In cases where the law or contract requires the individual's consent to process personal information, the Bug Bounty platform seeks to comply with the law or contract.