
iFixit
External Program
Submit bugs directly to this organization
If you've discovered a security vulnerability, we appreciate your help in disclosing it to us in a responsible manner.
We'll work with you to make sure that we understand the scope of the issue, and that we fully address your concern. If you believe you have discovered a vulnerability or have a security incident to report, please email [email protected]. Please include a detailed summary of the issue you discovered. Be sure to include an email address where we can reach you in case we need more information.
Please act in good faith towards our users' privacy and data during your disclosure. When testing for vulnerabilities, please do not insert test code into popular public guides - these guides are used by thousands of people daily, and disrupting their experience by testing for vulnerabilities is harmful (Please, always make a new guide instead!). We won't take legal or administrative action against you or your account if you act accordingly: White hat researchers are always appreciated.
We're happy to provide a reward to users who report valid security vulnerabilities. To be eligible for credit and a reward, you must:
Please do report:
Please do not report:
Our security team will assess each bug to determine if it qualifies.