A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Announcement We are temporarily unable to pay bounties to foreign researchers with non-Russian bank accounts # Security address Contact: mailto:bug-hunters@tinkoff.ru # Bug Bounty programs - https://bugbounty.standoff365.com/programs/tinkoff - https://app.bugbounty.bi.zone/companies/tinkoff/main - https://bugbounty.ru/app/programs/tinkoff # Bug Bounty policy - https://bugbounty.standoff365.com/programs/tinkoff - https://app.bugbounty.bi.zone/companies/tinkoff/main - https://bugbounty.ru/app/programs/tinkoff # Accepted languages Preferred-Languages: ru, en # This file was served via Canonical: https://www.tinkoff.ru/.well-known/security.txt # Join our security team Hiring: https://www.tinkoff.ru/career/it/?specialtyUrl=informacionnaya-bezopasnost
This policy crawled by Onyphe on the 2022-02-28 is sorted as securitytxt.
FireBounty © 2015-2025