Sublime Forum

Bug bounty or responsible disclosure program?

#1

Hi All,

I wanted to ask whether Sublime Text has a bug bounty or responsible disclosure program for reporting potential licensing or security-related issues.

While reviewing the licensing behavior, I believe I may have identified an issue related to how the Unlimited User License is enforced. I don’t want to share technical details publicly, but I’d like to report this responsibly to the appropriate team if there is a preferred process.

Please let me know the best way to proceed, or if there is a specific contact for security or licensing disclosures.
image
Thanks for your time,

0 Likes

#2

We do not have a bug bounty program. If you’d like to report an issue privately you can direct message me here, or contact support@sublimetext.com.

That said our DRM is purposefully weak so as to avoid inconveniencing paid customers, we’re well aware of people patching the binary to avoid checks.

0 Likes