#AkashHamal0x01-info
1 messages ยท Page 1 of 1 (latest)
Hi, unfortunately I don't have DM enabled but if that's something sensitive you should write to Support
I am developer and can help with non-sensitive info here
@abstract musk can i have a chance to speak to the program triagers?
What do you mean by program triagers?
i mean who manage reports of stripe program through hackerone
You mean this? https://hackerone.com/stripe?type=team
ah jinx
I believe they are not in this Discord server. Only way is to write to Support and they will get you contact with them
you said you are developer right?
Yep
have you worked on taxjar project?
No, unfortunately. Any thing you can elaborate?
yes
an account takeover was found on taxjar
the h1 triager closed as informative idk why
saying its intended functionality
Thanks for raising. Any email/number that may identify the conversation?
wdym? didnt get it
I can't see that (gone) link ๐
only visible to me and internal team of stripe who manages reports
we can have 1 on 1 zoom meeting so i can make you understand
but this is serious issue/misconfiguration
I can't do zoom, sorry ๐ Please wait for a few mins
sure do update me. and thanks!
Ok I found the internal team. Could you write into Support and describe your appeal with the report? Then tell me either email used/ticket number if any and I will connect it to the internal team reviewing hacker one reports
(I still need something from you and good for papertrail, so it's better to have a ticket with explanation) while here I don't have the detail thus can't just go tell the team "I have a possible vunerability but I don't know what it is"
@abstract musk should i mail to support@stripe.com
yes!
i did that and the mail i used is akashhamal223@gmail.com
Awesome. I found it. Left an internal note already!
Let's wait for it to reach out to the team
thanks and unfortunately i cannot confirm as i lost access to my 2fa app so would like to continue conversation via mail if possible and thank you so much!