Security
Security & responsible disclosure
We take the security of our own website seriously; a telephony-security company should. If you have found an issue, here is how to tell us, and what to expect.
Reporting
How to report an issue
If you believe you have found a security vulnerability in this website, please email us with enough detail to reproduce it. Give us a reasonable opportunity to respond and remediate before any public disclosure.
Report to
Please include
- A clear description of the issue and its impact
- Steps to reproduce it
- Any relevant URLs, requests or evidence
Our commitment
What you can expect
- We will acknowledge a good-faith report and work to remediate promptly
- We support coordinated disclosure and will agree timelines with you
- We will not pursue legal action for good-faith, non-disruptive research that respects users' data and this policy
Please do not
- Access, modify or delete data that is not yours
- Degrade or disrupt the service for others
- Use automated high-volume testing against the site
- Publicly disclose before we have had a chance to respond
This policy covers the GoldAgent website. It does not authorise testing of any customer systems, and we do not operate a paid bug-bounty programme at this time.