A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Our security address Contact: mailto:security@mercantil.com.br # Our OpenPGP key Encryption: https://bdu.bmb.com.br/pgp-public-key/pgp-key.asc # List of preferred languages for security reports Preferred-Languages: pt-br, en, es # Date and time after which this file is considered stale Expires: 2030-10-15T00:00:00Z
This policy crawled by Onyphe on the 2026-01-03 is sorted as securitytxt.
FireBounty © 2015-2026