Have you found a bug in a Gameforge application somewhere beyond these domains? We’re grateful for every bug report we receive and will gladly forward your reports to the respective developers in your name – if you so wish.
Legal representatives and current or former employees of the Gameforge AG company group and associated companies, their spouses and relatives, are excluded from participation. Minors may only participate with the consent of their parents or legal guardians.
Please also note the following:
See also: Rules for You
No technology is perfect. Gameforge believes that working with skilled security researchers across the globe is essential to identifying and mitigating meaningful security risks. If you believe you've found a security issue in one of our products or services, we encourage you to notify us.
We highly value well-documented reports that clearly demonstrate business, user, or security impact, ideally supported by a proof of concept (PoC). Reports that focus solely on missing best practices, theoretical weaknesses, or hardening opportunities without a demonstrable impact are generally treated as informational.
Interested? You can find all important details in the FAQ and rules.
Legal representatives and current or former employees of the Gameforge group and associated companies, as well as their spouses and relatives, are excluded from potential bounties.
Minors may only participate with the consent of their parents or legal guardians.
Gameforge develops and operates a variety of web applications and games, and also publishes games developed by third parties while using third-party services.
Only vulnerabilities in software and services developed and managed by Gameforge are eligible for this program. Vulnerabilities in third-party software are excluded.
That said, we appreciate every report we receive. If you identify an issue in third-party software, we are happy to forward your report to the respective vendor on your behalf, if you wish.
To avoid misunderstandings, please consult the FAQ for the full and up-to-date list of domains and applications that are in scope for the Vulnerability Disclosure Program.
Which domains are part of the Vulnerability Disclosure Program?
Out-of-Scope Vulnerabilities
SHOW ALLTL;DR – What We're Looking For
SHOW ALLWhat do I need to know?