Quantifying the Value of Bug Bounty Programs: ROI, ROM, or Both? | HackerOne

Is ROI the right method to measure bug bounty value? Check out the cost-benefit analysis of ROI vs. ROM.