# HackerOne vs YesWeHack

| Attribute | HackerOne | YesWeHack |
|---|---|---|
| **Vioscale score** | 5.6 (15% (low)) | 34.5 (29% (low)) |
| deployment.options | `{"cloud":true}` | `{"cloud":true}` |
| description.long | HackerOne provides an integrated system for identifying and fixing critical vulnerabilities across an organization's attack surface. It combines automated detection, expert validation, and prioritization powered by an elite community of security researchers to close the gap between vulnerability discovery and remediation. | A cloud-based platform that helps organizations discover and fix vulnerabilities across their entire internet-facing attack surface through automated penetration testing, community-powered bug bounty programs, and vulnerability disclosure policies, with compliance-ready reporting and security workflow integration. |
| integrations.count | 3 | 13 |
| integrations.list | `[{"name":"Slack"},{"name":"JIRA"},{"name":"GitHub"}]` | `[{"name":"Jira"},{"name":"ServiceNow"},{"name":"GitHub"},{"name":"GitLab"},{"name":"Azure DevOps"},{"name":"UBIKA"},{"name":"Mindflow"},{"name":"Hackuity"},{"name":"BlinkOps"},{"name":"AWS Marketplace"},{"name":"Burp Suite"},{"name":"Firefox"}]` |
| market.availability | `{"primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | `{"hqCountry":"FR","primaryMarkets":["FR","GB","US","SE","AE","CA"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` |
| platform.support | `{"web":true}` | `{"web":true}` |
| pricing | `{"type":"quote","plans":[{"free":false,"name":"Professional","contactSales":true},{"free":false,"name":"Enterprise","contactSales":true}],"summary":"Professional and Enterprise tiers available; contact sales for pricing.","sourceUrl":"https://www.hackerone.com","retrievedAt":"2026-08-18T22:05:18.595Z"}` | `{"type":"usage","sourceUrl":"https://www.yeswehack.com","retrievedAt":"2026-08-18T22:04:21.224Z"}` |
| pricing.model | quote | commercial |
| pricing.price_level | unknown | unknown |
| pricing.transparent | no | no |
| security.disclosure_policy | yes | yes |
| security.gdpr | - | yes |
| security.iso27001 | - | yes |
| security.soc2 | - | yes |

## Capabilities (Bug Bounty)

| Capability | HackerOne | YesWeHack |
|---|:--:|:--:|
| **Capabilities** |  |  |
| Public bug bounty programs | - | - |
| Private invite only programs | - | - |
| Vulnerability disclosure programs | - | - |
| Managed bug triage deduplication | - | - |
| Platform managed payouts | - | - |
| Cvss scoring assistance | - | - |
| Jira linear integration | - | - |
| Slack teams alerting | - | - |
| Continuous attack surface discovery | - | - |
| SOC2 type ii | - | - |
| ISO 27001 | - | - |
| Pricing model | - | - |

*Source: Vioscale. Generated 2026-09-01T15:08:30.252Z. "-" = undocumented, not absent.*
