A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# For Coordinated Vulnerability Disclosure Contact: mailto:security@bas.bund.de Encryption: https://www.bundesamtsozialesicherung.de/fileadmin/redaktion/Zertifikate_Kommunikation/20221026SMIME-Domain-Key_bas.bund.de.zip Expires: 2023-10-27T12:10:29z Preferred-Languages: de, en Canonical: https://www.bundesamtsozialesicherung.de/.well-known/security.txt Hiring: https://www.bundesamtsozialesicherung.de/de/karriere/stellenangebote/
This policy crawled by Onyphe on the 2023-09-30 is sorted as securitytxt.
FireBounty © 2015-2025