A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an origanisation will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifable via a simple way, a security.txt notice.
# If you want to report a security vulnerability # You can reach us here: Contact: <a href='mailto:abuse@icn.bg'>abuse@icn.bg</a> Contact: <a href='https://www.icn.bg/bg/contacts/'>https://www.icn.bg/bg/contacts/</a> Preferred-Languages: en, bg
This policy crawled by Onyphe on the 2020-05-22 is sorted as securitytxt.
FireBounty © 2015-2021