drchrono · Vulnerability Disclosure
Drchrono Vulnerability Disclosure
Vulnerability disclosure
DrChrono runs a public bug bounty program on HackerOne, launched 2016-05-25, with a written policy, named scope covering the API, stated triage SLAs and PHI-weighted minimum rewards. It is public and offers bounties, but its submission state was DISABLED when probed on 2026-08-14 — the policy is readable, the intake is closed. DrChrono publishes no security.txt on any host, so there is no machine-readable path from an API host to this program.
drchrono runs a coordinated vulnerability disclosure program on Hackerone.
EHRElectronic Health RecordsHealthcareMedical RecordsPractice ManagementHIPAAAppointmentsBillingPrescriptionsLab IntegrationFHIRSMART on FHIRUSCDIInteroperabilityWebhookAuthenticationONC CertifiedTelehealthRevenue Cycle Management
Program: Hackerone