A vulnerability disclosure policy (VDP), also referred to as a responsible disclosure policy, describes how an organization will handle reports of vulnerabilities submitted by ethical hackers. A VDP must thus be easily identifiable via a simple way, a security.txt notice.
# version: E3BD46448B087916CBCDF881643B4465F8D2BC1E # Grafton Group plc - Reporting vulnerabilities for any Grafton Group plc Website # Our disclosure policy. By submitting a potential security incident to us, you are implicitly accepting these terms - please read this before submitting: https://www.graftonplc.com/.well-known/disclosure_policy.html # Please report any security vulnerabilities to us via the contact method(s) below, only after reading our disclosure policy. # Please do not include any sensitive information in your initial message, we may choose to provide a secure communication method in our reply to you. Contact: security-reports@graftonplc.com # Please see https://securitytxt.org/ for details of the specification of this file
This policy crawled by Onyphe on the 2024-04-01 is sorted as securitytxt.
FireBounty © 2015-2024