A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Our security address Contact: mailto: cert@axa.com # Our OpenPGP key Encryption: https://cert.axa/sources/AXA-CERT-pubkey.asc # Our security policy / documentation Policy: https://cert.axa/
This policy crawled by Onyphe on the 2022-02-03 is sorted as securitytxt.
FireBounty © 2015-2024