A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# We greatly appreciate the efforts of security researchers # to help improve our security and keep our users and site safe. # While we do not offer monetary compensation today, # we do recognize researchers on our hall-of-fame. # https://www.compass.com/legal/responsible-disclosure/ # If you would like to report a security issue, # please contact us using the information below. Contact: mailto:security-reports@compass.com Preferred-Languages: en
This policy crawled by Onyphe on the 2023-09-30 is sorted as securitytxt.
FireBounty © 2015-2025