Omarchy has launched an official bug bounty program on HackerOne backed by a $100,000 bounty pool funded by the Omacom Foundation. Security researchers who find verifiable vulnerabilities can submit reports through HackerOne to follow remediation progress and receive payment, or they can report privately via [email protected]; full reporting criteria and scope are listed on the security page. Using HackerOne standardizes submission and payout, and gives the Omarchy Security Team a managed triage workflow to handle incoming reports efficiently.
To lead security efforts, Mehmet İnce is joining Omarchy Core as Head of Security, elevating his previous role on the security team to set overall direction for building security into releases and operating the bounty program. The move signals a formalization of security processes and a commitment - supported by patrons - to invest real resources in hardening the system. The announcement emphasizes operational readiness for receiving and fixing vulnerabilities and frames the bounty and leadership hire as steps to make Omarchy both secure and robust going forward.
Summary generated by AI from the linked article. hn.today is not affiliated with Hacker News or Y Combinator.