Hacker News new | ask | show | jobs
by underdeserver 1829 days ago
"Always just publish your research."

In most bug bounty programs I've seen (including Apple's and Facebook's) payouts are contingent on not publishing the research without consent.