
Innovaccer
Unify your data and deploy AI agents across clinical, operational, and financial workflows for faster growth, lower costs, and better outcomes.
External Program
Submit bugs directly to this organization


Unify your data and deploy AI agents across clinical, operational, and financial workflows for faster growth, lower costs, and better outcomes.
External Program
Submit bugs directly to this organization
Innovaccer is committed to the security of our products and customers. We reward reporters for the responsible disclosure of in-scope issues and exploitation techniques.
If you discover a bug, we appreciate your cooperation in responsibly investigating and reporting it to us so that we can address it as soon as possible.
Note: We don't have bug bounty practice for now, but we'd acknowledge your efforts with hall of fame certificate.
Be the first to report the issue to us. Please adhere to the following guidelines to report a bug:
| # | Vulnerability Type | Comment |
|---|---|---|
| 1. | Cross-Site Request Forgery | With significant security impact |
| 2 | Cross-Site Scripting | Self-XSS is out of scope |
| 3 | Open Redirects | With significant security impact |
| 4 | Cross Origin Resource Sharing | With significant security impact |
| 5 | SQL injections | - |
| 6 | Server Side Request Forgery | - |
| 7 | Privilege Escalation | - |
| 8 | Local File Inclusion | - |
| 9 | Remote File Inclusion | - |
| 10 | Leakage of Sensitive Data | - |
| 11 | Authentication Bypass | - |
| 12 | Directory Traversal | - |
| 13 | Payment Manipulation | - |
| 14 | Remote Code Execution | - |
| 15 | Replay Attack | - |
| 16 | Vulnerable Library | - |
| 17 | Session Hijacking | - |
| 18 | Overflow attack | - |
Any valid vulnerability with significant Security Impact