L3
Responsible disclosure
Security concerns deserve an accountable path.
Draft coordinated-disclosure process for security-team approval before launch.
Draft · Security approval required
INDRIS values responsible security research. This process must be approved and paired with a monitored security mailbox before production publication.
How to report
Until a dedicated channel is operational, contact sanjay.gupta@indristech.com with “Responsible security disclosure” in the subject. Do not include sensitive exploit details in the first message.
Include
- A concise description of the suspected issue.
- The affected public asset.
- Non-destructive reproduction steps.
- Your preferred contact details.
Research expectations
Avoid privacy violations, disruption, data destruction, social engineering, physical intrusion and access beyond what is necessary to demonstrate the issue.
