MANAGED SECURITY PROGRAMS
Security programs built for
startups, teams & enterprises
Choose a vulnerability disclosure, bug bounty, direct email relay,
or analyst-reviewed self-managed workflow that matches your
organization’s security and reporting requirements.
VDP
Managed Vulnerability Disclosure Program
For organizations that need a structured disclosure channel with
safe-harbor language, secure submissions, validation, and managed triage.
$79
per cycle
Up to 15 valid reports included.
Included
- ✓ Public vulnerability disclosure page
- ✓ Safe-harbor disclosure policy
- ✓ Secure report submission workflow
- ✓ DarkByte validation and triage
- ✓ Researcher and DarkByte ASE email notifications
- ✓ Company access after DarkByte ASE validation
Start VDP
MANAGED PROGRAM
BBP
Managed Bug Bounty Program
For organizations that want a coordinated bug bounty program with
custom scope, researcher communication, validation, and managed triage.
Custom
scope based
Pricing depends on scope, complexity, and program requirements.
Included
- ✓ Bug bounty setup and launch support
- ✓ Researcher submission handling
- ✓ DarkByte validation and triage
- ✓ Researcher and DarkByte ASE email notifications
- ✓ Company access after DarkByte ASE validation
- ✓ Remediation and payout coordination
Contact Us
SELF MANAGED
Direct-to-Company Email Relay
For organizations that want reports delivered directly to their
security email while DarkByte provides secure intake, status tracking,
and two-way communication.
Custom
workflow based
Immediate company delivery with secure thread tracking.
Included
- ✓ Secure report intake through DarkByte
- ✓ Immediate delivery to company security email
- ✓ Researcher and DarkByte ASE confirmation emails
- ✓ Company email replies shown as portal comments
- ✓ Researcher comments relayed back by email
- ✓ Report body removed after confirmed delivery
- ✓ Researcher sees only status and discussion
Start Self Managed
SELF MANAGED REVIEWED
Analyst-Reviewed Email Delivery
For organizations that want DarkByte analysts to review and validate
each submission before it is delivered to the company security team.
Custom
review based
Private intake with company delivery after admin approval.
Included
- ✓ Private report intake through DarkByte
- ✓ Researcher and DarkByte ASE notifications on submission
- ✓ DarkByte ASE review before company delivery
- ✓ Approved reports sent to company security email
- ✓ Company replies synchronized with portal comments
- ✓ Status, decision, and payout tracking
- ✓ Controlled researcher report visibility
Start Reviewed Plan
BBP
Researcher and DarkByte ASE are notified immediately.
The company receives access after triage approval.
VDP
Researcher and DarkByte ASE are notified immediately.
The company receives access after validation and triage.
Self Managed
Researcher, DarkByte ASE, and the company receive notifications
immediately. Communication continues through the secure email relay.
Self Managed Reviewed
Researcher and DarkByte ASE are notified first.
The company receives the report only after analyst approval.
DarkByte Solutions does not conduct testing on customer systems without
explicit written authorization, approved scope, and permission from
the asset owner.