I noticed that new projects this day are not using bug bounty hunters to see how strong their security 🔐 is, it's not because they don't have the money, they raised millions and don't care..
It looks like getting hacked is a big excuse to rob people's money, they can easily blame it on hack and say 'we are sorry we get hacked' where as they pray for it or have it in mind to hacked themselves .
I read somewhere that some bugs bounty hunters find bug for few new projects that could have messed up the funds but the project team do not compensate them and ignore the bounty hunter. It's like saying ' who told you to find a bug?' .
It seems we need to take this seriously, any project that doesn't open door for legit hackers ( bug hunters ) to test-run their security or system and claim they are safuu are really not.