Our responsible disclosure process is our commitment to security and transparency. We welcome and value the contributions of security researchers and ethical hackers in identifying potential vulnerabilities in our systems. If you've discovered a security issue or vulnerability within our platform, we encourage you to report it to us promptly.
Upon receiving your report, our security team will assess and verify the issue. We prioritise the security and privacy of our users and aim to address any identified vulnerabilities promptly. We request that all disclosures adhere to responsible guidelines, refrain from exploiting or sharing the issue publicly, and allow us the necessary time to investigate and implement a resolution.
Your cooperation in reporting any potential security concerns helps us maintain a secure environment for our users and fortify our systems against potential threats. Thank you for your support in keeping our platform safe and secure for everyone.
The following areas of our environemnts are what we define as in scope;
- verofy.com website
- go.verofy.com customer portal
- partner.verofy.com partner portal
- Verofy® mobile apps
- verofy.support portal
- Verofy® API endpoints
- payfaclite.com partner site
Please submit detailed information about the issue, including steps to reproduce, to our dedicated security team.
- Verofy® does not permit security research of our systems including the folllowing case types;
- Denial-of-Service (DoS) attack including but not limited to SYN Flood, Smurf Attack, Ping Flood
- Illegal or regulatory violations
- Attempting to access our databases
- Ransomware attacks or requests for compensation to discose vulnerabilities
- Social engineering of any type
- Exploiting a vulnerability or impacting or attempting to impact our services
Once we have received your report we will acknowledge receipt and then complete the following;
- We will look to complete our review within 7 working days
- We will update you throughout our remediation process
- We will confirm once the vulnerability has been remediated
Should the vulnerability you reported be valid we will list your name on this page with a message a of thanks.
Our responsible disclosure process is a testament to our commitment to security and transparency. We welcome and value the contributions of security researchers and ethical hackers in identifying potential vulnerabilities in our systems. If you've discovered a security issue or vulnerability within our platform, we encourage you to report it to us promptly.
Upon receiving your report, our dedicated security team will swiftly assess and verify the issue. We prioritize the security and privacy of our users and aim to address any identified vulnerabilities promptly. We request that all disclosures adhere to responsible guidelines, refrain from exploiting or sharing the issue publicly, and allow us the necessary time to investigate and implement a resolution.
Your cooperation in reporting any potential security concerns helps us maintain a secure environment for our users and fortify our systems against potential threats. Thank you for your support in keeping our platform safe and secure for everyone.
The following areas of our environemnts are what we define as in scope;
Please submit detailed information about the issue, including steps to reproduce, to our dedicated security team.
Verofy does not permit security research of our systems including the folllowing case types;