NEXUS
Security program

Bug Bounty

We reward security researchers who responsibly disclose vulnerabilities in MiCamp products. If you have found something, we want to hear about it.

Scope

The program covers the products documented on this site and their public APIs:

  • WAVit — merchant app, public API, and payment processing
  • MiPaymentChoice — gateway API, virtual terminal, hosted pages
  • CloudPay — transaction processing and merchant portal
  • MiDashboard ERP and MiStorage web applications and APIs

How to report

Email a detailed report to security@micamp.com including reproduction steps, affected endpoints or pages, and the impact you believe the issue has. We will acknowledge reports within two business days.