
Pfizer
External Program
Submit bugs directly to this organization
##Report a Security Vulnerability
Hope changes lives. We at Pfizer are in relentless pursuit of scientific breakthroughs and revolutionary medicines that will create a healthier world for everyone. Pfizer takes cybersecurity seriously and value the contributions of the security community at large. The responsible disclosure of potential issues helps us ensure the security and privacy of our customers and data.
##Vulnerability Disclosure Policy
Pfizer has partnered with HackerOne to handle reports of potential security or vulnerability issues in our products or services. Please note that this policy does not provide any form of defense or indemnity for any actions, nor does it authorize or encourage any actions that are either in breach of the law or of this policy.
##Safe Harbor
Pfizer will not initiate legal action against you for any security research activities under the HackerOne Vulnerability Disclosure Programs conducted in a manner consistent with this policy.
##Guidance If you believe you’ve found a security issue in one of our products or services, please notify us and include the following details with your report:
##Submitting a Vulnerability
Once a report is submitted, Pfizer commits to provide prompt acknowledgement of receipt of all reports and will keep you reasonably informed of the status of any validated vulnerability that you report through this program.
##Unauthorized Conduct
This policy is designed to be compatible with common vulnerability disclosure good practice. Researchers shall disclose potential vulnerabilities in accordance with the following guidelines:
Thank you for helping keep Pfizer’s customers and data safe.