Grammarly

Summary

Grammarly seems to have a Bug Bounty or Vulnerability Disclosure program managed at HackerOne. Our bots had reported us they appear to be offering rewards ๐Ÿ’ธ ๐Ÿ’ฐ ๐Ÿ‘€.
As this page is programmatically generated, we do not guarantee the accuracy or completeness of the data and cannot be held liable for any errors or omissions. Users are advised to verify the information directly from the official sources before taking any action based on the content found on this website.
In Scope
MS Office Add-In
*.grammarly.com
*.grammarly.io
*.grammarlyaws.com
AppActions
Browser Extensions ( The extension is available in the extension/add-on store of the respective browser: * [Chrome](https://chrome.google.com/webstore/detail/grammarly-for-chrome/kbfnbcaeplbcioakkpcpgfkobkghlhen?hl=en) * [Firefox](https://addons.mozilla.org/en-US/firefox/addon/grammarly-1/) * [Edge](https://microsoftedge.microsoft.com/addons/detail/grammarly-ai-writing-and/cnlefmmeadmemmdciolhbnfeacpdfbkd) * [Safari](https://apps.apple.com/us/app/grammarly-for-safari/id1462114288) **Browser Extension vulnerabilities will not be distinguished. For example, if a vulnerability exists in the Chrome and Safari extensions, we will consider it the same vulnerability and will only award one bounty.** )
Capture the Flag ( The first hacker who reports the `$FLAG` saved in the document (`document_id: 1198436185`) of the user `[email protected]` (`user_id: 1411519194`) will be awarded a **$100K bounty**. )
Grammarly AI Assistant
Grammarly Business Features ( ### Security features - Account roles and permissions - SAML single sign-on - Managed mode - Invite and domain capture ### Team features - Style guide - Brand tones - Knowledge Share - Snippets - Analytics dashboard ## Supporting Resources - [Overview of Business features](https://www.grammarly.com/business) - [Feature comparison](https://www.grammarly.com/plans) - [Snippets Introduction](https://www.grammarly.com/business/snippets) - [Brand tones introduction](https://www.grammarly.com/business/brand-tones) - [Analytics introduction](https://www.grammarly.com/business/analytics) - [Style Guide introduction](https://www.grammarly.com/business/styleguide) - [Knowledge Share introduction](https://support.grammarly.com/hc/en-us/articles/16664924710797-Introducing-Knowledge-Share) - [Managed Mode](https://support.grammarly.com/hc/en-us/articles/8341171286541-Managed-Mode) - [Invite](https://support.grammarly.com/hc/en-us/articles/115000931852-Invite-team-me
Grammarly Desktop for Windows ( https://download-windows.grammarly.com/GrammarlyInstaller.exe )
Grammarly Desktop for macOS ( https://download-mac.grammarly.com/Grammarly.dmg )
Grammarly for Microsoft Word
com.grammarly.android.keyboard
com.grammarly.keyboard
grammarly.ai
Out of Scope
Grammarly Editor for MacOS ( [Download link](https://download-editor.grammarly.com/osx/Grammarly.dmg): Only **remotely exploitable** issues in Grammarly Editor are eligible for reporting. )
Grammarly Editor for Windows ( [Download link](https://download-editor.grammarly.com/windows/GrammarlySetup.exe) Only **remotely exploitable** issues in Grammarly Editor are eligible for reporting. )
Grammarly for Developers Text Editor SDK ( [Text editor SDK](https://developer.grammarly.com/) allows application developers to enhance their apps with writing assistant from Grammarly. - [Developer Documentation](https://developer.grammarly.com/docs/) - [Getting Started](https://developer.grammarly.com/docs/quick-start) - [Developer Console](https://developer.grammarly.com/apps) [NPM packages](https://developer.grammarly.com/docs/api/): - [@grammarly/editor-sdk](https://developer.grammarly.com/docs/api/editor-sdk/) - [@grammarly/editor-sdk-react](https://developer.grammarly.com/docs/api/editor-sdk-react/) - [@grammarly/editor-sdk-vue](https://developer.grammarly.com/docs/api/editor-sdk-vue/) Notable features: - **[Connected Accounts](https://developer.grammarly.com/docs/connected-accounts)** - **[Trusted Authentication](https://developer.grammarly.com/docs/trusted-authentication)** Grammarly for Developers and the Text Editor SDK were discontinued on January 10, 2024. The SDK will
Third party external services