Early access: this site has moved to bugrater.com.
NR Unrated
SEEK
SEEK Bugcrowd $50–$10,000
3 more reviews needed for a grade
Write a review Claim this company profile

Work at SEEK? Claim it to respond to reviews as the verified owner.

Found a vulnerability?

If you would rather not deal with the vendor yourself, a BugRater analyst will submit it upstream on your behalf, with your explicit permission, and tell you what came back.

Ask BugRater to submit it

Private. The report body is encrypted at rest; BugRater holds the key, so the analyst working it can read it. Every read is logged.

Reviews

0 published

No reviews yet.

Be the first to review

Program profile Bugcrowd · imported

Facts published by Bugcrowd on the program's own page, not reported by researchers, and not part of the BugRater grade. Last checked 19 Sep 2026.

SEEK is Australia's no. 1 jobs, employment, career and recruitment site. We invite the security researcher community to test SEEK's web applications and services. Thank you for participating! Program Requirements Denial of Service, Rate Limiting, and other automated/volumetric attacks are not permitted. Do NOT use automated tooling against SEEK assets. Customer instances are not to be accessed in any way (no customer data is to be accessed, and customer credentials are not to be used or "verified"). All testing must be conducted using your @bugcrowdninja.com email ID only. If you fail to use your @Bugcrowdninja.com email ID, you run the risk of getting blocked from accessing SEEK applications. We do not accept reports that contain low-effort or AI-generated content. Submissions must demonstrate original analysis, clear understanding of the issue, and actionable detail. Reports lacking meaningful human input will be rejected. Ratings / Rewards For initial prioritisation, this program uses the Bugcrowd Vulnerability Rating Taxonomy. Priority may be adjusted based on likelihood or impact. Where an issue is downgraded, a full explanation will be provided and the researcher may appeal. To maximise your reward and reduce payout time, please include: Attack scenario: the most likely way an attacker could abuse this vulnerability. Clear reproduction steps: if we can't replicate the issue, we may not consider it serious. Recommended fix: practical mitigation suggestions add value to the submission. Triage SLA P1/P2: triaged within one business week. P3/P4/P5: triaged within three business weeks.

Currency
USD
Submissions
Open
Scope entries
18 Bugcrowd’s count

Scope

18 assets
AssetTypeEligibilityMax severity
*.aips-internal.com website ✓ bounty not set
*.employer.seek.com website ✓ bounty not set
*.jobapi.net api ✓ bounty not set
*.jobsdb.com website ✓ bounty not set
*.jobstreet.com website ✓ bounty not set
Show all 18 assets
AssetTypeEligibilityMax severity
*.myseek.xyz website ✓ bounty not set
*.outfra.xyz website ✓ bounty not set
*.seek.com website ✓ bounty not set
*.seekpass.co website ✓ bounty not set
*.skinfra.xyz website ✓ bounty not set
*.sol-data.com api ✓ bounty not set
auth.seek.com api ✓ bounty not set
graphql.seek.com api ✓ bounty not set
https://seekcdn.com other ✓ bounty not set
SEEK mobile app for Android android ✓ bounty not set
SEEK mobile app for iOS ios ✓ bounty not set
SEEK Pass Mobile App for Android android ✓ bounty not set
SEEK Pass Mobile App for iOS ios ✓ bounty not set