Vulnerability Disclosure Policy

We take the security of our systems seriously, and we value the security community. The disclosure of security vulnerabilities helps us ensure the security and privacy of our users.

Overview

Security is a shared responsibility that encompasses the Perdix Software team, customer teams, and independent security researchers and auditors.

Ensuring security requires all parties to collaborate, share information, and perform their duty professionally and with a high standard of care.

Guidelines

We require that all researchers…

If you follow these guidelines when reporting an issue to us, we commit to…

Scope

In general, any service created by or hosted by Perdix Software is in scope.

In practice, this is generally limited to:

Out of scope

Any services hosted by 3rd party providers and services are excluded from scope.

In the interest of the safety of our users, staff, the Internet at large and you as a security researcher, the following test types are excluded from scope:

Things we do not want to receive:

How to report a security vulnerability

If you believe you’ve found a security vulnerability in one of our products or platforms please send it to us by emailing security@perdixsw.com.

Please include the following details with your report:

Last revised