A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# In the event that you have discovered a technical vulnerability in an IT system of the Coop Genossenschaft or its subsidiaries, # we encourage you to report it to BugBounty Switzerland (BBS) via our Vulnerability Disclosure Program (VDP) using the contact URL below. # Your request will be processed there and then forwarded directly to us, where we will assign it to the responsible department. # If you are interested in participating in our private bug bounty programs, you can apply via the contact email address below. OpenBugBounty: https://openbugbounty.org/bugbounty/coop_itsecurity/ Contact: https://app.bugbounty.ch/public/engagement/details/d44c4224-b92d-49ad-8312-104a8e2aaad2 Contact: mailto:security@coop.ch Preferred-Languages: de, en Canonical: https://www.coop.ch/.well-known/security.txt Hiring: https://www.coopjobs.ch Policy: https://www.coop.ch/de/unternehmen/vdp.html Expires: 2025-12-31T23:59:59.000Z
This policy crawled by Onyphe on the 2023-06-30 is sorted as securitytxt.
FireBounty © 2015-2025