GitLab has updated its HackerOne Bug Bounty program policies, improving transparency and safety for researchers. Key changes include enhanced testing guidance utilizing local environments, refined vulnerability scopes, and a 7-day grace period for certain reports. These updates aim to clarify boundaries and streamline processes, reinforcing GitLab's commitment to its security community.