A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Contact: security@spodhuis.org Encryption: https://www.security.spodhuis.org/PGP/keys/keys-2013rsa-2020cv25519.asc Preferred-Languages: en Canonical: https://www.spodhuis.org/.well-known/security.txt Expires: 2024-04-11T20:00:00Z -----BEGIN PGP SIGNATURE----- iHUEARYIAB0WIQQ2vqQhJhxApU/JJhwudmURD4pW/wUCZDbA4QAKCRAudmURD4pW /x8sAQCdRv6vwN+8xvlgAAsK4qLYJAoAdbGPp5LfZshxRa9sagD/Z12y0Hbl0iUj crp98/QXncx8RJ+Q1HnUTuDHvkAGdAQ= =EG4b -----END PGP SIGNATURE-----
This policy crawled by Onyphe on the 2020-12-03 is sorted as securitytxt.
FireBounty © 2015-2025