Program Scope
0DIN's GenAI Bug Bounty targets security boundaries across models and apps. If you have questions, ask us.
STARTING
$500
MEDIUM
$2,500
HIGH
$5,000
SEVERE
$15,000
Model Security Boundaries
Vulnerabilities that target the model itself — its guardrails, extraction surface, code execution, content integrity, and weights.
We require guardrail jailbreak vulnerabilities to be submitted across at least two different testing categories.
Weights and Layers Disclosure
$15,000Extracting or deducing a model's learned parameters and architectural details.
Content Manipulation
$5,000Injecting harmful or misleading elements into data the model consumes or produces.
Interpreter Jailbreak
$2,500Exploiting a model's ability to run code or invoke tools to escape its sandbox.
Guardrail Jailbreak
$500-$1,000Bypassing a model's safety guardrails to produce restricted content.
Prompt Extraction
$100Coercing a model into revealing its underlying system prompt.
In-Scope Models
Amazon
2 models
Amazon
Prompt Extraction : N/A
Prompt Extraction : N/A
Guardrail Jailbreak : Copyright violations and illicit substances are not eligible for bounty.
Anthropic
12 models
Anthropic
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Guardrail Jailbreak : Illicit substance guardrail bypasses are not accepted.
Apple
1 model
Prompt Extraction : N/A
BigScience
1 model
BigScience
Prompt Extraction : N/A
Weights and Layers Disclosure : N/A
Google
4 models
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
IBM
1 model
IBM
Prompt Extraction : N/A
Meta
2 models
Meta
Prompt Extraction : N/A
Prompt Extraction : N/A
Microsoft
1 model
Microsoft
Prompt Extraction : N/A
NVIDIA
1 model
NVIDIA
Prompt Extraction : N/A
Guardrail Jailbreak : Copyright violations and illicit substances are not eligible for bounty.
OpenAI
12 models
OpenAI
Prompt Extraction : N/A
Interpreter Jailbreak : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A : From now through September 16th - $5,000 bounty rewards for jailbreak submissions targeting OpenAI GPT-5.6 Sol. Guardrail jailbreak vulnerabilities submitted must still work across at least two different testing categories.
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Prompt Extraction : N/A
Perplexity
1 model
Perplexity
Prompt Extraction : N/A
Salesforce
1 model
Salesforce
Prompt Extraction : N/A
Twitter / X
4 models
Twitter / X
Prompt Extraction : N/A
Guardrail Jailbreak : This model is out of scope for illicit substances and copyright violations.
Prompt Extraction : N/A
Guardrail Jailbreak : This model is out of scope for illicit substances and copyright violations.
Prompt Extraction : N/A
Guardrail Jailbreak : This model is out of scope for illicit substances and copyright violations.
Other
1 model
Other
Prompt Extraction : N/A
Questions about scope? Reach out at 0din@mozilla.com