Skip to main content

How does responsible vulnerability disclosure work?

Written by amaise Support

How does responsible vulnerability disclosure work?

amaise follows a documented process for responsible disclosure of security vulnerabilities:

  • Acknowledgment: Reports are acknowledged within 48 hours.

  • Resolution: Critical vulnerabilities are fixed within 72 hours.

  • Scope: All amaise production systems.

  • Safe Harbor: amaise takes no legal action against security researchers acting in good faith.

Vulnerabilities should not be publicly disclosed before amaise has had the opportunity to fix them. There is currently no formal bug bounty program.

Did this answer your question?