
Emptrust
External Program
Submit bugs directly to this organization
#EMPTrust Vulnerability Reporting Policy Keeping our customers’ data secure is our number-one priority, and we encourage responsible reporting of any vulnerabilities that may be found in our site or application.
EMPTrust is committed to working with the security community to verify and respond to any potential vulnerabilities that are reported to us. The EMPTrust security team acknowledges the valuable role that independent security researchers play in Internet security.
Additionally, EMPTrust pledges not to initiate legal action against security researchers for penetrating or attempting to penetrate our systems as long as they adhere to the conditions below.
##Testing for security vulnerabilities: Conduct all vulnerability testing against Trial or Developer Edition organizations (instances) of our online services to minimize the risk to our customers’ data.
##Reporting a potential security vulnerability:
##EMPTrust does not permit the following types of security research:
##To all security researchers who follow this EMPTrust Vulnerability Reporting Policy, the EMPTrust security team commits to the following:
##No compensation: EMPTrust does not compensate people for reporting a security vulnerability, and any requests for such compensation will be considered a violation of the conditions above. In such an event, EMPTrust reserves all of its legal rights