🗓️ Book Your Mobile CI/CD Assessment Session!
Learn More       Talk to an Expert
Logo
  • Get in Touch
  • Mail İcon
    info@appcircle.io

Follow us on:

  • Github IconX IconYoutube IconLinkedIn IconReddit Icon
ISO 27001SOC2 Type2
LinkedIn IconLinkedIn IconLinkedIn IconLinkedIn IconLinkedIn Icon
  • Product
  • Features
  • Why Appcircle?
  • Meet Our Customers
  • Enterprise
  • Self-Hosted Appcircle
  • Local macOS Services
  • Integrations
  • Appcircle AI
  • Use Cases
  • Guides
  • Pricing
  • System Status
  • CLI
  • Community
  • Partners
  • Blog
  • Events
  • Whitepapers
  • Guides and Docs
  • CI/CD Maturity Report
  • Release Notes
  • How-to Videos
  • Slack Channel
  • Getting Started
  • Compare
  • Mobile CI/CD Tools
  • Appcircle vs App Center
  • Appcircle vs Appflow
  • Appcircle vs Bitrise
  • Appcircle vs Codemagic
  • Appcircle vs Xcode Cloud
  • Appcircle vs Jenkins
  • Company
  • Mission and Vision
  • Contact Us
  • Careers
  • Press Kit
  • Product
  • Features
  • Why Appcircle?
  • Meet Our Customers
  • Enterprise
  • Self-Hosted Appcircle
  • Local macOS Services
  • Integrations
  • Appcircle AI
  • Use Cases
  • Guides
  • Pricing
  • System Status
  • CLI
  • Community
  • Partners
  • Blog
  • Events
  • Whitepapers
  • Guides and Docs
  • CI/CD Maturity Report
  • Release Notes
  • How-to Videos
  • Slack Channel
  • Getting Started
  • Compare
  • Mobile CI/CD Tools
  • Appcircle vs App Center
  • Appcircle vs Appflow
  • Appcircle vs Bitrise
  • Appcircle vs Codemagic
  • Appcircle vs Xcode Cloud
  • Appcircle vs Jenkins
  • Company
  • Mission and Vision
  • Contact Us
  • Careers
  • Press Kit

Copyright © 2026 Appcircle Inc. All rights reserved.

Terms of ServicePrivacy PolicyCookie PolicyInformation Security PolicySecurity in Appcircle
Appcircle LogoAppcircle Logo
Product
featuresFEATURES

Unlock the full potential of Mobile CI/CD with Appcircle's powerful features

enterprise
Build

Effortlessly Automate Your Mobile App Builds

enterprise
Enterprise App Store

Enterprise Mobile App Store

enterprise
Signing Identities

Complete Signing Identity Management

enterprise
Re-sign Binaries

Mastering Binary Re-signing for App Security

enterprise
Testing Distribution

Comprehensive App Distribution for Testing

codepush
CodePush

Seamless OTA Update Process

enterprise
Publish to Stores

Automate App Store Publishing from Days to Minutes

Microsoft Intune App Releases
Publish to Intune

Streamline Microsoft Intune App Releases

featuresPLATFORMS

Explore the mobile platforms comprehensively supported by Appcircle

enterprise
iOS CI/CD

iOS Continuous Integration and Delivery (CI/CD)

enterprise
Android CI/CD

Android Continuous Integration and Delivery (CI/CD)

enterprise
React Native CI/CD

React Native Continuous Integration and Delivery (CI/CD)

enterprise
Flutter CI/CD

Flutter Continuous Integration and Delivery (CI/CD)

featuresINTEGRATIONS

Streamlined Integration with Hundreds of Ready Workflow Steps!

Sonarqube

Sonarqube

Danger

Danger

Fastlane

Fastlane

Tuist

Tuist

BrowserStack

BrowserStack

Resources
RESOURCESRESOURCES

Comprehensive documentation to support you at every stage of your Appcircle journey.

Learn

enterprise

Docs

enterprise

Blogs

enterprise

Events

whitepapers

Whitepapers

enterprise

Videos

Get Started

enterprise

Objective-C/Swift

enterprise

Java/Kotlin

enterprise

React Native

enterprise

Flutter

Guides

enterprise

Continuous Testing

enterprise

Advanced Caching

enterprise

Marketplaces

enterprise

API & CLI

CONNECT

enterprise

LinkedIn

enterprise

X

enterprise

Slack Community

Enterprise
RESOURCESENTERPRISE

Experience Appcircle's robust, enterprise-grade capabilities tailored for advanced needs

enterprise
Mobile CI/CD at Scale
enterprise
OpenShift
self-hosted
Self-Hosted
enterprise
Kubernetes
enterprise
Meet Our Customers
enterprise
Docker
enterprise
Why Appcircle?
enterprise
Podman
BlogPricingContact Us
BlogPricingContact Us
Log in ➔Start for Free

Bug Bounty Program

Keeping our customers' data safe is a top priority at Appcircle. If you believe you have found a security vulnerability in an Appcircle service, we encourage you to report it to us privately. We review every report and reward valid findings based on their severity.

How to report

  • Email your report to security@appcircle.io. Please do not use support tickets or public channels.
  • Include a clear title, the affected service or URL, a description of the vulnerability and its impact, and step-by-step reproduction instructions or a proof of concept.
  • Reports containing only automated scanner output are not accepted.

Scope

Any exploitable vulnerability that can compromise the integrity of customer data, disclose sensitive information or disrupt the service on the Appcircle cloud platform (my.appcircle.io and its APIs), for example:

  • Remote code execution
  • SQL or other injection
  • Authentication or authorization bypass, including cross-organization data access
  • Cross-site scripting (XSS) and cross-site request forgery (CSRF)
  • Exposure of sensitive data such as credentials, signing keys or certificates

Out of scope

  • Self-hosted Appcircle installations and the marketing website
  • Vulnerabilities in third-party services or software we use
  • Missing security headers (HSTS, CSP, X-Frame-Options and similar)
  • Missing cookie flags, autocomplete settings or mixed content
  • Self-XSS, logout CSRF and CSRF on anonymous forms
  • Username or email enumeration, verbose error messages and software version disclosure
  • Missing rate limiting or brute force without a demonstrated impact
  • Social engineering, phishing and physical attacks
  • Denial of service attacks

Rules

  • Test only against accounts and data you own. Do not access, modify or delete other users' data.
  • Do not degrade the service or run high-volume automated scans.
  • Give us reasonable time to fix the issue before any public disclosure.

We will not take legal action against researchers who follow these rules and act in good faith.

Rewards

Rewards are paid as gift cards and are based on the severity of the finding:

  • Critical: $200
  • High: $100
  • Medium: $50
  • Low: Hall of Fame
  • Appcircle determines the final severity and reward.
  • Only the first report of a given issue is eligible.
  • Rewards are subject to an annual program budget. Once the budget is used, valid reports are acknowledged in the Hall of Fame only.

Hall of Fame

We thank the following researchers for responsibly disclosing security issues to us. Researchers are listed only after the issue is fixed and with their permission.

No entries yet. Be the first!

REQUEST FOR MORE SPECIFICS

Get Started with Appcircle

Save time, reduce costs, and increase developer productivity

Join Our Newsletter

Get informed about news, new releases, and mobile DevOps.