Published 2 months ago
Published 2 months ago
SAFD
Updated 2 months ago
0
Hello, I’ve identified multiple critical/high security issues in Safeline.
I’ve completed PoCs, and I’d like to report them.
Could you please let me know the appropriate way to submit these?
If possible, enabling GitHub's private vulnerability reporting would also be helpful as it's most straight-forward way.
Carrie
Updated 2 months ago
0
We do not have a bug bounty program. Could you briefly describe the vulnerability you discovered?
SAFD
Updated 2 months ago
I know that bug bounty program isn’t exist and GitHub’s private vulnerability reporting is not for bug bounty program, that’s just for pipeline of fixing vulnerability. And as you know, telling vulnerabilities in semi-public community like here is strongly not recommended.