Genius Hacker
This is not a job title so much as a description of a person. If you are the one who looks at a system and immediately sees where it gives, we would rather have you pointed at ours.
We sell privacy. That makes every gap between what we claim and what we enforce a serious problem, and the only way to find those is to have someone genuinely try. The client secrets are extractable from a binary; the quota logic can be gamed; the anonymity boundary is only as good as its weakest path. We know roughly where the soft parts are. We would like to know exactly.
Shape it as you like: full-time, contract, or an engagement that starts with you breaking something and us paying for the report.
What you would do
- Attack what we have built — auth, quotas, the anonymity boundary, the client binaries, the Worker
- Document what you found clearly enough that it can be fixed, and what it would take
- Help decide what we harden first, given a small team and finite time
- Push back on claims in our public copy that the implementation does not earn
What we are looking for
- A track record: CVEs, bug bounties, CTFs, write-ups, or a story you can tell
- Reverse engineering, mobile app security, or API abuse specifically
- The judgement to know which findings matter and which are theatre
- Your own view of what this role should be — the people worth hiring for it usually have one
How to apply
Email us with something you have built. A repo, an app, a write-up of a problem you solved — anything that shows how you think is worth more here than a CV.
Apply for Genius Hacker