vulns.co
/
GKData.io MCP

Bugcrowd · 1 min read

Comcast Xfinity Vulnerability Disclosure Program

Paid Bounty · Points - $3,500

Open current program Scope capture

What this record establishes

Scope capture

Published asset rows were captured. The full policy and eligibility were not individually reviewed.

Official directory card labeled Bug Bounty. Monetary reward displayed. Program policy and submission status not reviewed.

Published asset scope

Snapshot captured 2026-10-03. Scope status: Captured.

In scope · 6 published rows
AssetTypeGroup / eligibility
*.sys.comcast.netwebsitePrimary Targets
https://business.comcast.com/accountwebsitePrimary Targets
TV - Xfinity hardware and serviceshardwarePrimary Targets
Flex - Xfinity hardware and serviceshardwarePrimary Targets
Voice - Hardware and servicehardwarePrimary Targets
Mobile Apps iOS and AndroidPublished location: https://www.xfinity.com/appsotherPrimary Targets
Out of scope · 1 published rows
AssetTypeGroup / eligibility
Comcastbiz.netPublished location: https://www.comcastbiz.net/websiteOut of Scope

Capture limits

  • Only the published asset table was captured; program rules and eligibility still require individual review.

Live policy and platform eligibility still require review.

Sources and collection identity

  1. Official program page Primary source · reviewed 2026-10-03
  2. Published scope source Primary source · reviewed 2026-10-03

Appears in Discovery, Bounty, Bugcrowd. No identity match is inferred from a shared company name.

GitHub snapshot 2026-10-04

53796974ace8 · JSON exports & schemas · CC BY 4.0 content / MIT software