Security

Bug Bounty Program

Help us keep our platform secure. Report vulnerabilities, earn cash rewards, and contribute to the safety of the DayTraders trading infrastructure.

How It Works

Find a Bug. Get Paid.

We recognize the importance of maintaining a secure and trustworthy platform. Our bug bounty program rewards security researchers who identify and responsibly disclose vulnerabilities in our systems. The reward amount is determined based on the severity of the vulnerability and the quality of the report.

01
Discover

Identify a qualifying vulnerability on our platform or Rithmic-connected infrastructure.

02
Report

Submit a detailed description using the form below, including steps to reproduce.

03
Validate

Our security team reviews and validates the submission against our scope criteria.

04
Reward

Upon confirmation, we issue a cash reward based on severity and report quality.

Scope

Eligible Vulnerabilities

Cross-Site Scripting (XSS)

Reflected, stored, or DOM-based injection of malicious scripts.

SQL Injection

Unauthorized database query manipulation through input fields.

Remote Code Execution

Ability to execute arbitrary commands on server infrastructure.

Server-Side Request Forgery (SSRF)

Forcing the server to make requests to unintended internal resources.

Remote File Inclusion (RFI)

Including external files through vulnerable input parameters.

Platform & Rithmic

Vulnerabilities associated with our in-house platform or Rithmic integration.

Submit Report

Report an Issue

Have a general security concern? Let us know.