XackStack - Bug Bounty Site

Introducing XackStack, a centralized and open-source directory for self-hosted bug bounty and vulnerability disclosure programs. My goal was to create a platform that saves security researchers valuable time, so they can focus on what they do best: hacking. This project is for the community, and I'm thrilled to finally share it! Check it out and spend less time searching, more time earning.

Tech Stack :
XackStack - Bug Bounty Site
XackStack Banner

XackStack

Your Compass in the World of Bug Bounties
The centralized directory for discovering and managing self-hosted bug bounty and vulnerability disclosure programs.
Next.js React TypeScript Firebase MongoDB Tailwind CSS

📸 Screenshots

Home Page

Home Page Real-time Hajj pilgrims summary

Programs Page

All Performers Record of all Hajj Performers

Contact Page

Pending Qurbani Page Record of performers whose qurbani is pending

🎯 About The Project

XackStack was born out of a common frustration in the security research community: the tedious and repetitive process of finding independent bug bounty programs. Instead of hacking, researchers spend hours using Google dorks and sifting through scattered sources to find viable targets.
This platform solves that problem by providing a single, curated, and structured source of truth. We handle the discovery, so you can handle the disclosure. XackStack is a comprehensive directory of self-hosted bug bounty and vulnerability disclosure programs, complete with advanced filtering and a clean, consistent interface.

✨ Key Features

  • Comprehensive Program Directory: A large, ever-growing list of self-hosted programs.
  • Advanced Filtering: Quickly find programs based on industry, asset type (web, API, web3, etc.), bounty range, and recognition policy.
  • Detailed Program Pages: Clear, structured information for each program, including scope, out-of-scope items, reward structures, and contact details.
  • Admin Dashboard: A secure, admin-only interface to add, edit, and manage program listings and review user feedback.
  • User Authentication: Secure login for administrators using Firebase Authentication (Email/Password & Google).
  • Responsive Design: A seamless experience across desktop and mobile devices.
  • User Feedback System: A dedicated contact form for users to suggest new programs, report issues, or provide feedback.

🛠️ Technology Stack

This project is built with a modern, robust, and scalable tech stack, ensuring a high-quality developer and user experience.
TechnologyDescription
Next.jsReact framework for server-side rendering and static site generation.
ReactUI library for building component-based interfaces.
TypeScriptStatic typing for robust and maintainable code.
FirebaseProvides user authentication and security rules.
MongoDBNoSQL database for storing program and feedback data.
MongooseObject Data Modeling (ODM) library for MongoDB.
Tailwind CSSA utility-first CSS framework for rapid UI development.
ShadCN/UIBeautifully designed, accessible UI components.
CloudinaryCloud-based image management for program logos.
ZodTypeScript-first schema validation with static type inference.
React Hook FormPerformant, flexible, and extensible forms with easy-to-use validation.

Made with ❤️ by Muhammad Hussain