We take security seriously and value responsible disclosure from security researchers, customers, and partners.
If you believe you have identified a security vulnerability affecting CSP Warden, our website, application, integrations, or related infrastructure, we encourage you to report it responsibly. This policy explains how to reach us, what we expect from researchers, and what you can expect from us in return.
Please email [email protected] with the details of your finding.
Please include as much detail as possible, including:
We review all legitimate reports and aim to respond as quickly as reasonably possible.
Where appropriate, we will:
CSP Warden does not currently operate a public bug bounty or paid vulnerability reward program.
We greatly appreciate responsible disclosure and the efforts of researchers who help improve security for everyone.
Researchers who responsibly disclose valid security issues may be acknowledged on our Hall of Fame page.
Public recognition is always optional and only included with permission.
Ready to disclose a vulnerability? Reach the security team directly.
Email us at [email protected]
View the Hall of Fame