DODVIR

Security Reporting

How to report a vulnerability or security incident safely.

Effective date:

Report a vulnerability

Email m.golov@dodvir.com with subject ‘SECURITY’. Include affected URL or version, impact, minimal reproduction, and a safe contact method. Do not include live credentials or personal data. We target acknowledgement within one business day and will coordinate status and disclosure timing.

Safe research

  • Use only accounts and installations you own or have written permission to test.
  • Do not access other customers, degrade availability, persist access, exfiltrate data, or use social engineering.
  • Stop after demonstrating impact and allow reasonable remediation time before disclosure.
Back to home