A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 # Our security address Contact: mailto:security@bamf.bund.de # Use the following languages to reach out to use Preferred-Languages: de,en # Our public key Encryption: https://www.bamf.de/.well-known/security-key.pub # Current location Canonical: https://www.bamf.de/.well-known/security.txt Expires: 2025-08-26T00:00:00.000001Z -----BEGIN PGP SIGNATURE----- iHUEARYKAB0WIQQMESC2RewTGh/p+nj4xOhxuSW/IwUCZ8BgrQAKCRD4xOhxuSW/ I3E+AP9XzpCZtvHBYJTWQoJSSo4lTKb0LHe0V/7qkshoyn1ZEgEAlCJip54E0c/j PNSbbBrw9oVQCRQeUkdPxiXLBx6Z7wI= =lqbC -----END PGP SIGNATURE-----
This policy crawled by Onyphe on the 2025-11-04 is sorted as securitytxt.
FireBounty © 2015-2025