Responsible disclosure & bug bounty policy
If Illinois Proxies has a vulnerability you have found, we would like to hear about it. Below we lay out the scope, what we pay for and what we do not, and how to report, so neither side gets surprised.
If Illinois Proxies has a vulnerability you have found, we would like to hear about it. Below we lay out the scope, what we pay for and what we do not, and how to report, so neither side gets surprised.
illinoisproxies.comWe reward demonstrated impact on our systems or on our customers. Amounts are in USD.
We acknowledge these and fix where warranted; no payment. You can check the full list below before writing your report.
At most, we accept these as Low or Informational. We read them and fix what deserves fixing, though no bounty is issued, even if the report is labeled Critical or High.
Email [email protected] with the subject Security report. Your report should include the affected URL, the exact steps to reproduce, the account you used and a proof of concept. Expect an acknowledgment within 5 business days and a severity decision within 10 business days.
Machine-readable contact details are at /.well-known/security.txt.
Send a reportPolicy last updated 2026-10-10.