A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# Worcestershire County Council - reporting security vulnerabilities. # Please report any security vulnerabilities to our website agency via the contact method(s) below, in accordance with the NCSC's Vulnerability Disclosure Policy. # Please do not include any sensitive information in your initial message, we'll provide a secure communication method in our reply to you. Contact: https://www.worcestershire.gov.uk/contact Contact: mailto:cybersecurity@worcestershire.gov.uk # Our disclosure policy. By submitting a potential security incident to us, you are implicitly accepting these terms - please read this before submitting: Policy: https://github.com/ukncsc/Vulnerability-Disclosure/blob/master/UK-Government-Vulnerability-Disclosure-Policy.md Last-Updated: 2026-02-27 12:39:13+0000 Expires: 2026-05-28 13:24:59+0100
This policy crawled by Onyphe on the 2026-03-01 is sorted as securitytxt.
FireBounty © 2015-2026