A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Department of Information Technologies (The Government of Moscow) responsible for vulnerability management and incident response Contact: mailto:infosec@mos.ru # Our OpenPGP key Encryption: https://www.mos.ru/.well-known/pgp-key.txt Expires: 10 Aug 2026 12:00:00 +0300
This policy crawled by Onyphe on the 2022-02-04 is sorted as securitytxt.
FireBounty © 2015-2025