
Keurig Dr Pepper
External Program
Submit bugs directly to this organization


External Program
Submit bugs directly to this organization
Keurig Dr Pepper looks forward to working with the security community to find vulnerabilities in order to keep our business and customers safe.
##I. Program Terms
##II. Testing & Submission Process
##III. FAQ's
** 1. Safe Harbor**
Any activities conducted in a manner consistent with this policy will be considered authorized conduct, and we will not initiate legal action against you. If legal action is initiated by a third party against you in connection with activities conducted under this policy, we will make it known that your actions were conducted in compliance with this policy. Keurig Dr Pepper reserves all legal rights in the event of noncompliance with this policy.
2. Program Eligibility
3. Program Rules
Do:
Do NOT:
4. Disclosure Policy
5. Legal
Keurig Dr Pepper reserves the right to modify the terms and conditions of this program, and your participation in the Program constitutes acceptance of all terms. Please check this site regularly as we routinely update our program terms and eligibility, which are effective upon posting. You can subscribe to receive email notifications when this policy is updated.
1. Response Times
| Type of Response | SLA in business days |
|---|---|
| First Response | 2 days |
| Time to Triage | 2 days |
| Time to Resolution | depends on severity and complexity |
2. Test Instructions
h1:<vdp-hackeroneusername>.3. Scope Exclusions
Can I get Keurig Dr Pepper swag?
Keurig Dr Pepper does not currently offer swag
Can Keurig Dr Pepper provide me with a pre-configured test account?
This program does not provide credentials or any special access
What causes a report to be closed as Informative, Duplicate, N/A, or Spam?
What is an example of an accepted vulnerability?
Valid and accepted vulnerabilities would be the type of report that identifies a unique security impact on this program’s specific scope. The report must also meet any submission criteria outlined in the policy, such as test plan instructions and a working proof of concept.
Thank you for helping keep Keurig Dr Pepper and our users safe!