VULNERABILITY DISCLOSURE POLICY
INTRODUCTION
This vulnerability disclosure policy applies to any security vulnerability you are considering reporting to us. If you have identified a security vulnerability in our products, services or systems, we would like to work with you to improve these. Please review this policy before attempting to test or report a vulnerability.
We value those who take the time and effort to report security vulnerabilities in accordance with this policy. However, we do not offer monetary rewards for vulnerability disclosures at this time.
REPORTING
You can report any vulnerability you discover in our systems by emailing
In your report please include details of:
- The website, IP or page where the vulnerability can be observed.
- A brief description of the type of vulnerability, for example; 'XSS vulnerability'.
- Steps to reproduce. These should be a benign, non-destructive, proof of concept. This helps to ensure that the report can be triaged quickly and accurately. It also reduces the likelihood of duplicate reports, or malicious exploitation of some vulnerabilities, such as sub-domain takeovers.