On each status, there will be slightly different action that can be done to a report.
In this current version, email templates can't be edited from the dashboard. If you want to edit the email templates, you can manually modify them at gerobug_dashboard/geromail/mail_templates.py
This is the first status when a report is received. If the report is invalid, you can mark it as invalid and the report will be removed from the dashboard. But still accessible from the report group list.
If the report is valid, you can move the report to the next step.
Each time a report is moved, the bug hunter will receive email notification automatically.
Sample Not Valid Notification to Bug Hunter Sample Notification to Bug Hunter In Review - Fixing (Retest)
On these phase, you can request amend (request more information / clarification to the bug hunter)
The bug hunter will receive an email regarding the request and will be able to send the requested information.
Sample Request Amend Notification After the bug hunter submitted the requested information, it will show on the report and you can access it by clicking the "View Update" button.
After Bug Hunter submit the Requested Information Submitted Amend by Bug Hunter You can request more amends during 'In Review' until 'Fixing (Retest)' if necessary.
Bounty Calculation
After the bug is fixed, you can move to this phase. In this phase, you will be able to send bounty calculation to the bug hunter depends on your company / organization policy.
Report in Bounty Calculation Bounty Calculation on Bug Hunter The report can't be moved to the next step without agreement from the bug hunter. The bug hunter will be given a chance to appeal (3 times maximum). This is to ensure that both parties reached a mutual agreement.
If the bug hunter disagree and appeal, a button will appear and you can see the appeal details by clicking the 'View' button right beside 'Appeals'
After Bug Hunter Submitted an Appeal Sample Appeal by Bug Hunter When a bug hunter submitted an appeal, you need to reconsider and send another calculation until both parties reached a mutual agreement.
In the other hand, if the bug hunter agree to the bounty calculation, the report will be automatically moved to the next phase.
Bounty in Process
In this phase, you can request NDA and Information from bug hunter to process the bounty according to the mutual agreement. Gerobug will send the NDA Template to the bug hunter to be signed.
Report Detail (Bounty in Process) Request NDA notification on Bug Hunter After the bug hunter submitted the NDA and requested information, it will show on the report and you can access it by clicking the "View" button right beside "Hunter Data".
After Bug Hunter Submitted NDA and Data Sample NDA and Data from Bug Hunter If all the necessary data and NDA have been received, and the bounty have been processed. You can complete the report. Gerobug will generate and send a certificate of appreciation to the bug hunter.
Notification of Completion to Bug Hunter Sample Certificate Generated by Gerobug