A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Contact: mailto:security@aunovis.de Expires: 2027-10-09T21:59:00.000Z Encryption: https://www.aunovis.de/pgp-key.asc Acknowledgments: https://www.aunovis.de/security-portal/ Preferred-Languages: en, de Canonical: https://www.aunovis.de/.well-known/security.txt Canonical: https://www.aunovis.de/security.txt Policy: https://www.aunovis.de/security-portal/ Hiring: https://www.aunovis.de/karriere/ CSAF: https://bomnipotent.aunovis.de/.well-known/csaf/provider-metadata.json -----BEGIN PGP SIGNATURE----- iHUEARYKAB0WIQTwJLACvRF/vGllgW/EKJbBhQDBPgUCZ/ypMQAKCRDEKJbBhQDB PnxKAQC9veWS0e05GaBOd6AkfMS4Hl7YfWRJuuNum8ue5MESKgEA9WTDfh5zxfUf Qx/O277QGrLAoIOB1P+6Dxxw6zKcxgI= =gDYC -----END PGP SIGNATURE-----
This policy crawled by Onyphe on the 2025-04-04 is sorted as securitytxt.
FireBounty © 2015-2025