A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Security Policy for DomainOptic # https://domainoptic.com/.well-known/security.txt # Last updated: 2025-12-17 Contact: mailto:brenbuilds@protonmail.com Expires: 2026-12-31T23:59:59.000Z Preferred-Languages: en Canonical: https://domainoptic.com/.well-known/security.txt # About DomainOptic # DomainOptic is a free website security audit tool. We perform passive # scanning only - fetching publicly accessible content the same way browsers do. # We do not bypass authentication, exploit vulnerabilities, or access restricted areas. # Responsible Disclosure # If you discover a security vulnerability in DomainOptic, please report it # to us at brenbuilds@protonmail.com. We appreciate your help in keeping # our users safe. # Scope # - domainoptic.com (main website) # - All subdomains of domainoptic.com # Out of Scope # - Third-party services we link to (registrars, etc.) # - Social engineering attacks # - Denial of service attacks # Acknowledgments # We appreciate security researchers who help us improve. Thank you!
This policy crawled by Onyphe on the 2026-01-02 is sorted as securitytxt.
FireBounty © 2015-2026