Time & Reckoning Bug Bounty Security Challenge
Time & Reckoning Bug Bounty Security Challenge Help us make Time & Reckoning safer, stronger, and more reliable. We are launching a special Bug Bounty Security Challenge for developers, security researchers, testers, and community members who want to responsibly report security issues, logic bugs, broken features, and serious technical problems. Grand Prize: $100 USD Additional reward: Contribution points based on severity The selected best valid report may receive a $100 USD grand prize. The reward will be paid within 90 days after the winning report is officially reviewed, confirmed, and selected. Reward tiers: Critical Account takeover, payment bypass, serious data loss, or severe security impact +500 contribution points High Authentication flaws, privilege escalation, major exploit, or serious abuse scenario +200 contribution points Medium Broken feature, moderate logic bug, gameplay abuse, or important functional issue +75 contribution points Low Visual glitch, minor issue, typo, small UI problem, or low-impact bug +25 contribution points Rules: Test only your own Time & Reckoning account. Do not attack, scan aggressively, overload, disrupt, or damage Time & Reckoning, WIZU LABS LTD, our infrastructure, servers, databases, APIs, players, accounts, or third-party services. The following actions are strictly forbidden: * DDoS or stress testing * Spam * Phishing * Social engineering * Malware * Credential theft * Brute force attacks * Attacks against other players * Accessing, modifying, deleting, exporting, or exposing data that does not belong to you * Public disclosure before we review and fix the issue * Any illegal or harmful activity Stop at proof-of-concept. Do not exploit an issue beyond what is necessary to prove its existence. Do not access, modify, download, delete, leak, or share any data that is not yours. Report privately first. Each report must include: * Your registered Time & Reckoning account name * A clear title * Severity estimate: Critical, High, Medium, or Low * Step-by-step reproduction instructions * Screenshots or video proof if available * A short explanation of the impact * The affected URL, page, feature, API, or flow * Suggested fix if you have one One issue per report. Duplicate reports, already-known issues, incomplete reports, unclear reports, non-reproducible reports, or reports without meaningful impact may not be awarded. Rewards are granted at the sole discretion of Time & Reckoning / WIZU LABS LTD based on severity, impact, clarity, reproducibility, originality, and usefulness of the report. The $100 USD grand prize is not guaranteed for every report. It will be awarded only to the selected best valid report, if a qualifying report is found. Time & Reckoning / WIZU LABS LTD reserves the right not to select a winner if no report meets the required quality, originality, technical, legal, or security standards. The selected winner will be announced on LinkedIn and/or on [www.timeandreckoning.com](http://www.timeandreckoning.com). By participating, you confirm that you will follow responsible disclosure principles, respect user privacy, avoid harmful testing, and comply with all applicable laws. Time & Reckoning / WIZU LABS LTD reserves the right to modify, extend, pause, cancel, restart, or terminate this contest at any time. By submitting a report, the participant confirms that they have read, understood, and accepted all contest rules, reward terms, security testing limits, legal responsibilities, and responsible disclosure requirements.