FedCatalog

HackerOne Continuous Security Testing Platform

HackerOne

HackerOne is a multi-tenant Vulnerability Disclosure and crowdsourced Bug Bounty platform.

AuthorizedLI-SaaS3 federal agency authorizations
FedRAMPAuthorizedAgency path · May 6, 2020
ImpactLI-SaaSPublic Cloud
Runs onAWSFedRAMP record
Agency authorizations3Leveraged by 2 offerings

Source: FedRAMP Marketplace · refreshed Sep 12, 2026 · How the data works

How to buy

Confirmed paths come from GSA and the FedRAMP record; searches are places to look.

Confirmed buying paths

  • Vendor directGovernment sales page from the FedRAMP record
    Visit →

Other places to check

✓ verified by FedCatalog · ○ vendor-supplied and reviewed · searches are places to look, not matches. FedCatalog shows what it can verify and labels what it can’t. Sell this to government? Send exact marketplace, GSA or SEWP listings to mark@fedcatalog.com.

FedRAMP Marketplace listing ↗ · Section 508 ACR Repository ↗ · SAM.gov ↗

Government footprint

3 agencies have an authorization or reuse on record for this offering.

What it does

HackerOne is a multi-tenant Vulnerability Disclosure and crowdsourced Bug Bounty platform. Organizations rely on HackerOne to detect unknown security vulnerabilities in public-facing systems as well as sensitive assets that are not publicly disclosed. This is done by giving customers access to the world’s largest commu

Authorization details

  • Offering
    HackerOne Continuous Security Testing PlatformFedRAMP ID FR1919750997
  • Status
    FedRAMP AuthorizedAgency authorization path · authorized May 6, 2020
  • Impact level
    LI-SaaSLow-impact SaaS: tailored baseline for low-risk SaaS that does not store PII beyond login
  • Deployment
    Public CloudSaaS
  • Runs on
    AWSFrom FedRAMP leveraged-system relationships.
  • Assessor (3PAO)
    Schellman Compliance, LLC
  • Leveraged by
    2 other offeringsFedRAMP offerings built on this one
  • Data as of
    Sep 12, 2026FedRAMP Marketplace, refreshed daily

An authorization belongs to this specific offering and boundary; the vendor’s other offerings are listed separately. Source: FedRAMP Marketplace · refreshed Sep 12, 2026.