yeswehack.com
In short: Getting listed on YesWeHack Public Programs is unpriced — no fee is published either way. Plan for about 10 minutes — it is a form plus links and assets you already have.
What they ask for: Launch your defensive vulnerability disclosure or public bug-bounty program with managed researcher access.
Launch your defensive vulnerability disclosure or public bug-bounty program with managed researcher access.
Requires security maturity, authorized scope, safe-harbor rules, triage ownership, and sufficient remediation capacity.
Open the submission page on yeswehack.com and complete its form — that is the "Open submit page" link at the top of this page.
Requires security maturity, authorized scope, safe-harbor rules, triage ownership, and sufficient remediation capacity.
Priority sets the band — this one is medium. Cost (not stated) and effort (quick) move it within that band, which puts it in the useful tier. The score orders a submission queue. It is not a measure of the site’s domain authority, traffic or quality.