Skip to content

Latest commit

 

History

History
22 lines (16 loc) · 1.68 KB

SECURITY.md

File metadata and controls

22 lines (16 loc) · 1.68 KB

Security

Reporting a Vulnerability

If you discover a security vulnerability within this organization, please send an e-mail to [email protected]. All security vulnerabilities will be promptly addressed.

Responsible Disclosure

We are committed to ensuring the privacy and security of our users. We believe that working with skilled security researchers across the globe is crucial in identifying weaknesses in any technology. If you believe you've found a security issue in our product or service, we encourage you to notify us. We welcome working with you to resolve the issue promptly.

Disclosure Policy

  • Let us know as soon as possible upon discovery of a potential security issue, and we'll make every effort to quickly resolve the issue.
  • Provide us a reasonable amount of time to resolve the issue before any disclosure to the public or a third-party.
  • Make a good faith effort to avoid privacy violations, destruction of data, and interruption or degradation of our service. Only interact with accounts you own or with explicit permission of the account holder.
  • Exclusively use the official communication channels described below for reporting vulnerabilities.
  • Do not engage in extortion.
  • Please provide detailed reports with reproducible steps. If the report is not detailed enough to reproduce the issue, the issue will not be eligible for a reward.
  • Submit one vulnerability per report, unless you need to chain vulnerabilities to provide impact.
  • Social engineering (e.g. phishing, vishing, smishing) is prohibited.
  • Make sure you are the first person to report the issue.
  • We will not take legal action against you if you play by the rules.