---
title: "Yogosha: Bug Bounty Platform"
description: "Launch and run pentests, bug bounties and VDPs, triage findings with CVSS scores and proofs of concept, and retest fixes."
canonical_url: "https://liners.com/yogosha"
markdown_url: "https://liners.com/yogosha.md"
type: "product"
language: "en"
image: "https://assets.liners.com/storage/v1/object/public/media/tools/yogosha/screenshot.webp?v=1789377840269"
published_at: "2026-09-18T10:29:56.284Z"
updated_at: "2026-09-18T10:37:58.889Z"
---

# Yogosha: Bug Bounty Platform

Launch and run pentests, bug bounties and VDPs, triage findings with CVSS scores and proofs of concept, and retest fixes.

## Breadcrumbs

- [Cybersecurity](/categories/cybersecurity)
- [Yogosha](/yogosha)

## Summary

Launch and manage pentests, bug bounties, and VDPs in one place

An offensive security testing platform for organizations to run PtaaS, bug bounty, and vulnerability disclosure programs with researcher collaboration and reporting.

## Product details

| Field | Value |
| --- | --- |
| Website | https://yogosha.com/ |
| Tagline | Launch and manage pentests, bug bounties, and VDPs in one place |
| Primary country | Morocco |
| Platforms | Web, API |
| Average rating |  |
| Published reviews | 0 |
| Verified listing | No |

## About the product

Yogosha is a web-based **offensive security testing platform** for organizations that need to plan, launch, and manage security tests end to end, including penetration testing and crowdsourced vulnerability discovery.

Key capabilities include:
- **Pentest as a Service (PtaaS)** to deploy a small team of skilled security researchers for point-in-time or periodic audits, with **fixed-cost** coverage and documented findings.
- **Bug Bounty programs** to run continuous testing with a larger researcher pool and **pay-only-for-valid-vulnerabilities** workflows.
- **Vulnerability Disclosure Program (VDP)** to publish instructions that let external parties **securely submit** potential vulnerabilities.
- **Vulnerability management and reporting** through a dashboard that supports triage, criticality sorting, retests, and reports that include **CVSS scores**, **proof of concept**, remediation guidance, and direct communication with researchers.

Available on **Web** (with a public login portal). API availability is referenced, but no public documentation URL was provided.

Target users include **enterprises, banks, governments, and other B2B organizations** responsible for securing web apps, APIs, and broader digital assets, including teams looking to assess **LLMs and generative AI** attack vectors.

Notable context: the platform emphasizes a **vetted security researcher community** (including the Yogosha Strike Force), and the website cites **1,100+ expert security researchers**, **300+ clients**, and operations across **12 countries**, which may matter to African security and engineering teams sourcing external offensive testing capacity for regulated or high-risk environments.

## Features

- [Cybersecurity](/categories/cybersecurity): Category
- [B2B](/tags/b2b): Product feature or technology
- [Marketplace](/tags/marketplace): Product feature or technology
- [SaaS](/tags/saas): Product feature or technology
- [Threat Detection](/tags/threat-detection): Product feature or technology
- [Egypt](/countries/egypt): Market
- [Morocco](/countries/morocco): Market

## Related pages

- [Alternatives](/yogosha/alternatives)
- [Reviews](/yogosha/reviews)
- [Transparency](/yogosha/transparency)

## Access and citation

- [Canonical HTML page](https://liners.com/yogosha)
- [Markdown route index](/sitemap.md)
- [Agent access guide](/llms.txt)
