Public bug reports
Capture 404/500 issues, UI regressions, performance problems, typo fixes, and policy violations in one place.
OWASP BLT gives teams a practical front door to collect issue reports, route sensitive vulnerabilities to BLT-Zero, and keep community reporting transparent through a live leaderboard.
Built for practical bug intake: clear public reporting, safe vulnerability handling, and community visibility in one workflow.
Capture 404/500 issues, UI regressions, performance problems, typo fixes, and policy violations in one place.
Contributors can submit reports without exposing account identity when privacy is important.
Route critical security disclosures through BLT-Zero with zero-log, zero-tracking guarantees.
Recognition stays visible through an auto-refreshed leaderboard generated from issue activity.
BLT covers the entire internet — report bugs, broken pages, or security problems on any domain, not just your own.
Reporters earn BACON tokens for accepted bug reports, turning community contributions into tangible recognition.
Keep public issue intake simple, keep sensitive security reports private, and keep contributor trust high with transparent tracking.
GitHub template or anonymous submission
Supported issue categories include:
Private channel powered by BLT-Zero
For sensitive security findings, use a private disclosure route with stronger safety guarantees:
Latest community-submitted issues from this repository
Yes, this is a bug reported for http://www.owasp.community/ it will stay open until they fix it
5 commentsIssues aren't particularly assigned here as such. You can directly raise a PR if the copilot one is not in the ready to merge zone yet. If it is, then that'll probably get merged.
2 commentsHi @DonnieBLT ! I'd like to work on this issue. I'll try reproducing the bug locally and investigate why the loading screen persists after refresh.
3 commentsThree practical steps to improve web quality and security response.
Find a broken flow, performance issue, typo, visual regression, or policy concern.
Use the GitHub template for normal issues or submit anonymously through BLT-API.
Accepted reports improve your leaderboard rank and help teams triage faster.
Updated Mar 10, 2026
Leaderboard refreshes every 6 hours via GitHub Actions.