{
  "id": 12348988,
  "title": "Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports",
  "url": "https://urgent.news/2026/10/06/google-pauses-oss-product-bug-bounty-rewards-after-surge-in-invalid",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-06T09:21:47.000Z",
  "source": {
    "name": "The Hacker News",
    "slug": "the-hacker-news",
    "url": "https://thehackernews.com/2026/10/google-pauses-oss-product-bug-bounty.html"
  },
  "original_language": "en",
  "account": null,
  "summary": "Google has stopped accepting product vulnerability reports through its bug bounty program for its open-source software. The change, in effect since October 1, means researchers can no longer submit security flaws in the code of projects such as Go, Angular, and Protocol Buffers there for a reward. Reports about supply chain compromises are still accepted, and reports filed before October 1 are",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}