A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# If you find any security vulnerabilities, please report them using the contact details on the following page. Thanks for your help! Contact: https://andrewlock.net/about/ # I'm active on Twitter, so you can also contact me there (please don't publicly disclose any security issues) Contact: https://twitter.com/andrewlocknet
This policy crawled by Onyphe on the 2020-11-04 is sorted as securitytxt.
FireBounty © 2015-2025