Skip to main content

Federacy wants to put bug bounty programs in reach of every startup

Federacy, a member of the Y Combinator Summer 2018 class, has a mission to make bug bounty programs available to even the smallest startup.

Traditionally, bug bounty programs from players like BugCrowd and HackerOne have been geared toward larger organizations. While these certainly have their place, founders William and James Sulinski, who happen to be twins, felt there was a gap in the marketplace, where smaller organizations were being left out of what they considered to be a crucial service. They wanted to make bug bounty programs and the ability to connect without outside researchers much more accessible, and so they built Federacy.

“We think that we can make the biggest impact by making the platform free to set up and incredibly simple for a even the most resource-strapped startup to extract value. In doing so, we want to expand bug bounties from probably a few hundred companies currently –across BugCrowd, HackerOne, etc. — to a million or more in the long run,” William Sulinski told TechCrunch.

That’s an ambitious long-term goal, but for now, they are just getting started. In fact, the brothers only began building the platform when they arrived at Y Combinator a couple of months ago. Once they built a working product, they started by testing it on the members of their cohort, using knowledgeable friends as security researchers.

They made the service public for the first time just last week on Hacker News and report over 120 sign-ups already. Their goal is 1000 sign-ups by year end, which William claims would make them the largest bug bounty platform by count out there.

Screenshot: Federacy

For now, they are vetting every researcher they bring on the platform. While they realize this approach probably won’t be sustainable forever, they want to control access at least for the early days while they build the platform. They plan to be especially attentive to the researchers, recognizing the value they bring to the ecosystem.

“It’s really important to treat researchers with respect and be attentive. These people are incredibly smart and valuable and are often not treated well. A big thing is just being responsive when they have a report,” Sulinski explained.

Screenshot: Federacy

As for the future, the brothers hope to keep building out the program and developing the platform. One idea they have is getting a fee should a client build a relationship with a particular researcher, and want to contract with that individual. They also plan to take a small percentage of each bounty for revenue.

Unlike more typical YC participants, the brothers are a bit older, in their mid-thirties with more than 20 years of professional experience under their belts. Brother James was director of engineering at MoPub, a mobile ad platform that Twitter acquired for $350 million in 2013. Earlier he helped build infrastructure for, a file sharing site that Facebook acquired in 2010. As for William, he was CEO of AccelGolf and Pistol Lake, and founding member and project lead at Shareaholic.

In spite of their broad experience, the brothers have valued the practical advice Y Combinator has provided for them and found the overall atmosphere inspiring. “It’s hard not to be in awe of the incredible things that people have built in this program,” William said.

from TechCrunch


Popular posts from this blog

Android blatantly copies the iPhone X navigation gestures

Google unveiled some of the new features in the next version of Android at its developer conference. One feature looked particularly familiar. Android P will get new navigation gestures to switch between apps. And it works just like the iPhone X.“As part of Android P, we’re introducing a new system navigation that we’ve been working on for more than a year now,” VP of Android Engineering Dave Burke said. “And the new design makes Android multitasking more approachable and easier to understand.”While Google has probably been working on a new multitasking screen for a year, it’s hard to believe that the company didn’t copy Apple. The iPhone X was unveiled in September 2017.On Android P, the traditional home, back and multitasking buttons are gone. There’s a single pill-shaped button at the center of the screen. If you swipe up from this button, you get a new multitasking view with your most recent apps. You can swipe left and right and select the app you’re looking for.If you swipe up o…

Square launches restaurant point-of-sale platform

Square, which has already made its way into retail stores and service-based businesses (think hair salons, massage therapists, etc), is officially getting into the restaurant business with the launch of Square for Restaurants. Square for Restaurants is a point-of-sale system that handles everything from menu updates, floor layouts, employee scheduling, performance tracking to tip splitting.Usually, restaurants have “some old legacy thing or something else,” Square Seller Lead Alyssa Henry told me.“Historically, we’ve not served this customer segment very well,” Henry said. “With Square for Restaurants, we’re excited to finally be able to serve this customer segment and deliver on a couple of key things that are core to Square but also highly valued by sellers of all types.”This new product is designed to be fast, self-serve, elegant and cohesive, Henry said. It also integrates seamlessly into Square’s existing ecosystem that includes Payroll, Capital and more. Given Square’s ownership…

Recapping the TechCrunch China Shenzhen 2018 event

This year we returned to Shenzhen, the Chinese city known as the world’s ‘Silicon Valley for hardware,’ for an event that was packed full of future-looking discussions, innovative startups, experienced founders, VCs and more.We love Shenzhen. Sure, Beijing has Zhongguancun and Shanghai has its international and diverse entrepreneurial community. But Shenzhen has a certain je ne sais quoi, an energy that pervades the entire city. Maybe it’s the great weather or maybe its youth of the place — both the residents and the age of the city itself — but every time we come to this southern city, we’re amazed by the people, projects, and companies thriving here.#Shenzhen, not Beijing or Shanghai, is the forerunner of Chinese innovation, says @ganglu, founder and CEO of TechNode— TechNode (@technodechina) November 19, 2018 This year was no different. From blockchain smartphones to battling robots, from hackathons to VC speed …