Skip to content

BugCrowd

Real-time updates with async data flow — this process creates risk records in Adversarial automatically from the BugCrowd platform. The BugCrowd integration allows you to manage vulnerabilities discovered through your BugCrowd submissions. All records will be in the Risk module.

  • Source: Bug Bounty
  • Type: Control Deficiency
  • Opened By: “BugCrowd Integration”

The integration can be enabled directly from your Adversarial tenant via Settings > Integrations. The necessary detail to connect your BugCrowd environment is the API Token.

This is a one-way, ingest-only integration:

  • New records in BugCrowd are automatically synced.
  • Subsequent updates are reflected in the Adversarial RSK record.
  • Changes in Adversarial do not impact BugCrowd.

BugCrowd submission states are mapped to Adversarial risk statuses as follows:

BugCrowd StateAdversarial Status
NewNew
TriagedNew
UnresolvedNew
ResolvedClosure Proposed
InformationalClosure Proposed
Out of ScopeClosure Proposed
Not ReproducibleClosure Proposed
Not ApplicableClosure Proposed

BugCrowd priority maps to Adversarial Initially Reported Urgency (IRU):

BugCrowd PriorityAdversarial IRU
P1 (Critical)Critical
P2 (Severe)High
P3 (Moderate)Medium
P4 (Low)Low
P5 (Informational)Info
BugCrowd FieldAdversarial FieldNotes
titleTitle
descriptionDescriptionPrefixed with a link to the BugCrowd submission
submitted_atDiscovered Date
last_transitioned_to_resolved_atClosed Date
severityIRUVia priority mapping above
remediation_adviceRemediation Task