Security — entry 003 of 30

Bugcrowd

Verified Jul 2026

Bugcrowd's platform API lets organizations manage crowdsourced bug bounty and vulnerability disclosure programs programmatically: pulling submissions, updating triage status, and syncing findings into ticketing or SIEM tools. Access tokens are issued per-user from the account's API Credentials page and sent as an Authorization: Token header, with requests capped at 60 per minute per IP. A free VDP Compliance/Starter disclosure program is enough to generate a working token and real access; full Bug Bounty program features are sold on custom, sales-negotiated pricing.

bug-bountyvulnerability-disclosurecrowdsourced-securitypenetration-testingsecurity-programs
AuthenticationAPI KeySign up with the provider to obtain credentials.
HTTPSSupportedTraffic is encrypted in transit.
CORSDisabledBrowser calls need a server-side proxy.
PricingFreemiumA usable free tier exists, with paid plans for more volume.
FormatsJSONResponses can be requested as JSON.

GreatAPIs Score

Score61out of 100
Authentication15/25API key required
Pricing17/20Freemium tier available
Docs0/20No docs or spec available
Formats9/15Single response format
Freshness20/20Verified within 6 months

Embed this badge

Scored 61 on greatapis.com
<a href="https://greatapis.com/api/bugcrowd/"><img src="https://greatapis.com/badge/bugcrowd.svg" alt="Scored 61 on greatapis.com"></a>

Auth quickstart

  1. Sign up with the provider to get an API key.
  2. Send it on every request as a headerAuthorization: <key>
  3. The exact header isn't documented — Authorization is a common default; confirm in the provider's docs.
Stored keyNo key stored

Your key is stored only in this browser (localStorage) and sent directly to the API — never to greatapis.