Reporting Security Vulnerabilities

This page is intended for security researchers. To find out more about our security, please visit our privacy information page.

If you believe you have found a security vulnerability on IRCCloud, we encourage you to let us know right away. We will investigate all legitimate reports and do our best to quickly fix the problem.

Please submit your report on HackerOne and our security team will respond as soon as possible.

Responsible Disclosure Policy

If you give us a reasonable time to respond to your report before making any information public and make a good faith effort to avoid privacy violations, destruction of data and interruption or degradation of our service during your research, we will not bring any lawsuit against you or ask law enforcement to investigate you.

Bug Bounty Info

To show our appreciation for security researchers, we offer a monetary bounty for certain qualifying security bugs. Here is how it works:


To qualify for a bounty, you must:

We will assess each bug to determine if it qualifies.



The following bugs are not eligible for a bounty (and we do not recommend testing for these):