RESPONSIBLE DISCLOSURE

Report vulnerabilities privately and coordinate disclosure

This process guides safe reporting; specific legal commitments remain subject to agreement and applicable law.

GOOD-FAITH RESEARCH

Responsible reporting principles

  • Do not access, modify or retain personal data beyond what is necessary to demonstrate the issue
  • Do not disrupt services or perform destructive testing or social engineering
  • Report privately with reproduction steps and impact assessment
  • Allow reasonable time for validation and remediation before disclosure
REPORTING

Submit a report

security.txt

Use the contact in security.txt or the company email; do not include secrets, OTPs or personal data in the initial report.

Email a security report
EXECUTIVE BRIEFING · TECHNICAL WORKSHOP

Turn a Kiosk requirement into an auditable delivery scope

Assess TCO, APIs, HAL, IAM, peripherals, PoC, UAT and the production roadmap with the KioWare team.