A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
Contact: mailto:security@fsfe.org Expires: 2026-01-15T23:00:00.000Z Encryption: openpgp4fpr:168FAB826B58B16874CE6E207784A1960FBEB3FA Encryption: openpgp4fpr:23EEF484FDF8291CBA09A40625FE376FF17694A1 Encryption: openpgp4fpr:AEEA84E56F3C69EAEECCA354C465BEB43C11B337 Preferred-Languages: en, de Canonical: https://fsfe.org/.well-known/security.txt
This policy crawled by Onyphe on the 2025-03-16 is sorted as securitytxt.
FireBounty © 2015-2025