Browse documentation
Monitor repository changes
Follow repository updates connected to bounty targets, filter by target intelligence, and open source-provider views.
7 min read
Understand repository changes
When an in-scope target links to a supported repository and branch, later branch updates can appear in the Commits feed. Supported sources include GitHub repositories and Gists, GitLab, Bitbucket, Gitea, Forgejo, SourceHut, and selected HTTPS Git hosts. The first observation establishes the starting point and does not appear as a change.
Repository changes
Supported repository branch updates
example/research-demo
main · Acme Cloud · GitHub scope target
Use the Commits feed
- 1
Open Latest Targets
Select the Commits tab. - 2
Inspect the mapping
Review the bounty program, source target, repository, branch, observation date, and before/after SHA. - 3
Open the repository host
Use the provider-specific compare link, or a commit link when no prior SHA is available, to inspect the change at its source.
Use the shared filters to narrow repository events by platform, tags, language, minimum target score, target opportunity label, or dupe risk. These target-level controls inspect the program target mapped to the repository event.
The browser refreshes the repository feed about once per minute only while the tab is active and the document is visible.
Enable repository alerts
- 1
Open Notification Rules
Repository alerts use the private Telegram rule, so connect Telegram first and open Notification Rules. - 2
Enable Repository changes
Turn on the explicit Repository changes stream. It starts disabled for new rules. - 3
Choose the match mode
Use Everything to receive every eligible repository event, or Filtered to apply the profile and opportunity controls below. - 4
Add optional filters
Filter by platform, parent-program opportunity, minimum target score, target opportunity label, dupe risk, scope, language, target type, reward, submission fee, program, or target pattern. - 5
Select Save Rules
Wait for the saved confirmation. Merely enabling the draft toggle does not change delivery.
A repository can be linked to more than one program target. An alert is included when at least one linked target matches your saved rule. Platform, reward, and parent-program opportunity filters still apply.
Repository events appear in the Commits feed first. Discord and opted-in Telegram notifications are grouped into hourly digests to reduce repeated alerts.
Enable repository alertsTurn on Repository changes, review filters, and save the rule.What bbradar stores
bbradar keeps the repository, branch or reference, before/after SHA, observation time, and affected program links needed to show an event. It does not retain code patches, diffs, source files, commit messages, changed paths, or addition/deletion details.
Discord and Telegram therefore link you to the repository provider for inspection instead of embedding code-change content.
Coverage and limitations
- Supported public repositories include GitHub and Gists, GitLab, Bitbucket, Gitea, Forgejo, SourceHut, and selected HTTPS Git hosts
- Active branch updates can appear in the Commits feed
- Tags and pinned commits are fixed references and do not produce later change alerts
- The first observation establishes a starting point without creating an alert
- Private or inaccessible repositories may not have change coverage
Coverage for self-managed repository hosts depends on whether that host is supported and publicly accessible.
