A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Contact: mailto:security@railsformers.com Encryption: https://security.rails.cz/.well-known/pgp-key.txt Policy: https://security.rails.cz/vulnerability-disclosure.html Acknowledgments: https://security.rails.cz/hall-of-fame.html Preferred-Languages: cs, en, sk Hiring: https://railsformers.cz/kariera Canonical: https://security.rails.cz/.well-known/security.txt Expires: 2026-09-11T00:00:00Z -----BEGIN PGP SIGNATURE----- iHUEARYKAB0WIQT0I546sTttoLBacVgKPCmMQpSULwUCaN0K0QAKCRAKPCmMQpSU LzOpAQD8kTf9FL/EsZB6nFDd4cFJlr5SFb5g3jA+nAtYkaKCXgD/XkymTuDGuUdt 1C+X8/shasnsMoX1SdyfUCS/4G8+LAY= =OtYI -----END PGP SIGNATURE-----
This policy crawled by Onyphe on the 2022-04-30 is sorted as securitytxt.
FireBounty © 2015-2026