A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
Contact: mailto:security@webcraft.ch Preferred-Languages: en, de Expires: 2030-01-01T00:00:00Z # Policy We do not operate a bug bounty or reward program. We accept responsible disclosure reports that contain a clear description of the issue and exact, reproducible steps. Reports without technical details may be closed without further review. Reports based on incorrect classifications or exaggerated severity assessments may be closed without further communication.
This policy crawled by Onyphe on the 2026-03-02 is sorted as securitytxt.
FireBounty © 2015-2026