Responsible disclosure
tell us first
Found a security problem? Tell us.
We would rather hear it from you than from someone else. If you have found a vulnerability in this site or anything we run, report it and we will work with you.
investors@Reviresco47.com
The process
both directions
What we ask, and what we owe you
How to report
- Email us with enough detail to reproduce it - a URL, the steps, and what you saw.
- Give us reasonable time to fix it before making it public.
- Tell us if you think user data was exposed, and we will treat that as urgent.
Please do not
- Access, change or delete data that is not yours.
- Run denial-of-service tests, spam, or anything that degrades the service for other people.
- Use social engineering, phishing, or physical attacks against anyone.
What we will do
- Acknowledge your report.
- Tell you honestly whether we think it is a real issue, and why.
- Keep you informed while we fix it.
- Credit you if you would like to be credited.
This site is a public informational site. It holds no patient data and never should - please do not send protected health information in a report, even as an example. We do not currently run a paid bounty programme.