Vulnerability reporting policy

We take the security of our systems seriously. Have you found a vulnerability? We would appreciate it if you report this to us responsibly.

Make a report

Send an email to: [email protected]Be sure to mention:
  • a clear description of the vulnerability
  • the location (URL or system)
  • Steps to reproduce the problem
  • Any evidence, such as screenshots or a proof of concept

What we are asking of you

  • Do not take advantage of the vulnerability
  • Do not approach, alter, or delete others' data
  • Do not carry out attacks such as DDoS or brute force
  • Keep the vulnerability confidential until it is resolved.
  • Give us enough time to fix the problem

What you can expect from us

  • Confirmation of your report within a reasonable timeframe
  • Assessment and follow-up of the notification
  • If relevant: feedback on the solution

Scope

This regulation applies to all systems and websites that