Security Policy

A summary of our security policy is in the privacy policy.

Vulnerability Disclosure Policy

If you are a security researcher and have found a vulnerability in one of our systems, please read our policy for instructions before completing the form below. You will be provided with details to give us further information securely.

NOTE: This is a Vulnerability Disclosure Program (VDP) and not a bug bounty. This means that we have not and do not given you any permission to carry out passive recon, active scanning, or security testing.

CC ISMS Pol 07 Vulnerability Disclosure Policy v1.0 2021 10