A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an origanisation will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifable via a simple way, a security.txt notice.
Contact: <a href='https://g.co/vulnz'>https://g.co/vulnz</a> Contact: <a href='mailto:security@google.com'>security@google.com</a> Encryption: <a href='https://services.google.com/corporate/publickey.txt'>https://services.google.com/corporate/publickey.txt</a> Acknowledgements: <a href='https://bughunter.withgoogle.com/'>https://bughunter.withgoogle.com/</a> Policy: <a href='https://g.co/vrp'>https://g.co/vrp</a> Hiring: <a href='https://g.co/SecurityPrivacyEngJobs'>https://g.co/SecurityPrivacyEngJobs</a> # Flag: BountyCon{075e1e5eef2bc8d49bfe4a27cd17f0bf4b2b85cf}
This policy crawled by Onyphe on the 2020-05-21 is sorted as securitytxt.
FireBounty © 2015-2021