Responsible Disclosure
Guidelines for responsibly reporting potential vulnerabilities.
01How to Report
Report suspected vulnerabilities to security@kettlelogic.example and include affected URLs, reproduction steps, impact, and any proof-of-concept details.
02Testing Expectations
Only perform non-destructive testing. Do not access another user’s data, degrade service availability, or use social engineering or physical intrusion methods.
03Disclosure Process
Kettle Logic will acknowledge receipt, investigate, and coordinate remediation timelines. Public disclosure should wait until fixes are deployed or approved.
04Safe Harbor
Kettle Logic will not pursue legal action for good-faith research performed under this policy and applicable law. Researchers must promptly stop activity upon request.
05PGP Key Placeholder
-----BEGIN PGP PUBLIC KEY BLOCK----- Version: Placeholder Comment: Replace with production key mQENBGPLACEHOLDERBCAD... -----END PGP PUBLIC KEY BLOCK-----
Questions about this policy? Contact us →