Skip to main content
Back to Blog
illustration depicting a person defending a business against a cyber attack.

"We extend our sincere gratitude to everyone who contributed to our bug bounty program and we look forward to continuing to strengthen security together."

2 min read

Security at Helcim: Our Ongoing Commitment

At Helcim, security is at the core of everything we do. The confidentiality, integrity, and availability of our merchants’ data remains our highest priority. As we continue to grow and enhance our platform, we continuously evaluate and implement the most effective ways to uphold and strengthen our security posture. After careful consideration, we have made the decision to suspend our bug bounty program. This decision aligns with our ongoing security strategy and allows us to focus on evolving our internal security measures while continuing to protect our merchants.

Thank You to Our Bug Bounty Contributors

Since launching our bug bounty program seven years ago, we have had the privilege of working with talented security researchers from around the world. Your contributions have helped us identify and remediate vulnerabilities, strengthening the security of the Helcim platform. We deeply appreciate the effort, expertise, and dedication that many of you have shown, and we thank you for helping to make Helcim a safer place for our merchants.

What This Means Going Forward

  • No new bug bounty submissions will be accepted. -** All existing test accounts** associated with previous bounty submissions will be deactivated. -** Previously submitted reports** will continue to be reviewed and addressed according to the program guidelines in effect prior to January 31st.
  • Any new vulnerability reports sent to Helcim contacts, including bounty@helcim.com, will be acknowledged but will not be eligible for review under a bounty program.

Security Reporting for Merchants

Merchants who need to report a bug or a security-related issue they have detected on the Helcim Merchant Platform, or that they have identified in their own systems that may impact Helcim’s security, can continue to do so by reaching out to Helcim Support via phone, email or in-app tickets. Our support team remains available to assist with any concerns.

Looking Ahead

While we are suspending the bounty program, our commitment to security remains stronger than ever. We will continue to invest in robust security measures, internal security testing, and partnerships that help ensure Helcim remains a secure and trusted platform for our merchants.

Once again, we extend our sincere gratitude to everyone who contributed to our bug bounty program. Thank you for your support, and we look forward to continuing to strengthen security together.

Thomas Llewellyn
Thomas Llewellyn

Thomas Llewellyn is a software developer at Helcim.