A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 # Security address Contact: mailto:angus+security@pobox.com # OpenPGP key Encryption: https://pgp.mit.edu/pks/lookup?op=get&search=0x14933FA0E2C095DE # Preferred languages Preferred-Languages: en, fr, it # Canonical URL Canonical: https://nomadcode.com/.well-known/security.txt -----BEGIN PGP SIGNATURE----- Comment: GPGTools - https://gpgtools.org iG4EARECAC4WIQTi0NBPLpCJtkAYfFEUkz+g4sCV3gUCYVMMpBAcYW5ndXNAcG9i b3guY29tAAoJEBSTP6DiwJXetogAn2dq4Of50+edWo7qp19s4tiMBhWfAJ95F/nR AHYllw+nlgsT/g2U94Rj2A== =gmdI -----END PGP SIGNATURE-----
This policy crawled by Onyphe on the 2021-12-03 is sorted as securitytxt.
FireBounty © 2015-2024