A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Hello, welcome to the ICANN security.txt # Canonical: https://www.icann.org/.well-known/security.txt Policy: https://www.icann.org/vulnerabilities Contact: https://hackerone.com/icann Contact: mailto:vulnerability@icann.org Encryption: https://www.icann.org/vulnerability-reports-public-key Preferred-Languages: en, es, fr, ar, ru, zh # # Thanks,
This policy crawled by Onyphe on the 2021-04-04 is sorted as securitytxt.
FireBounty © 2015-2024