Responsible Disclosure: Contributing to a Secure Platform

Your assistance in maintaining a secure environment is crucial to us. If you discover any potential vulnerabilities or security concerns within our system, we encourage you to report them responsibly.

Thank you from the Verofy® Security Team
Helping us to protect our environment

For security researchers and ethical hackers

Our responsible disclosure process is our commitment to security and transparency. We welcome and value the contributions of security researchers and ethical hackers in identifying potential vulnerabilities in our systems. If you've discovered a security issue or vulnerability within our platform, we encourage you to report it to us promptly.

Upon receiving your report, our security team will assess and verify the issue. We prioritise the security and privacy of our users and aim to address any identified vulnerabilities promptly. We request that all disclosures adhere to responsible guidelines, refrain from exploiting or sharing the issue publicly, and allow us the necessary time to investigate and implement a resolution.

Your cooperation in reporting any potential security concerns helps us maintain a secure environment for our users and fortify our systems against potential threats. Thank you for your support in keeping our platform safe and secure for everyone.

Our Disclosure Policy covers the following areas.

Whats in scope

The following areas of our environemnts are what we define as in scope;

- verofy.com website
- go.verofy.com customer portal
- partner.verofy.com partner portal
- Verofy® mobile apps
- verofy.support portal
- Verofy® API endpoints
- payfaclite.com partner site

To report a potential vulverability, please email us at: security@verofy.com

How to report

Please submit detailed information about the issue, including steps to reproduce, to our dedicated security team.

- Verofy® does not permit security research of our systems including the folllowing case types;
- Denial-of-Service (DoS) attack including but not limited to SYN Flood, Smurf Attack, Ping Flood
- Illegal or regulatory violations
- Attempting to access our databases
- Ransomware attacks or requests for compensation to discose vulnerabilities
- Social engineering of any type
- Exploiting a vulnerability or impacting or attempting to impact our services

Our promise

Thank you

Once we have received your report we will acknowledge receipt and then complete the following;

- We will look to complete our review within 7 working days
- We will update you throughout our remediation process
- We will confirm once the vulnerability has been remediated

Should the vulnerability you reported be valid we will list your name on this page with a message a of thanks.

Responsible Disclosure: Contributing to a Secure Platform

Your assistance in maintaining a secure environment is crucial to us. If you discover any potential vulnerabilities or security concerns within our system, we encourage you to report them responsibly.

Thank you from the Verofy® Security Team
Helping us keep protect our environment

For security researchers and ethical hackers

Our responsible disclosure process is a testament to our commitment to security and transparency. We welcome and value the contributions of security researchers and ethical hackers in identifying potential vulnerabilities in our systems. If you've discovered a security issue or vulnerability within our platform, we encourage you to report it to us promptly.

Upon receiving your report, our dedicated security team will swiftly assess and verify the issue. We prioritize the security and privacy of our users and aim to address any identified vulnerabilities promptly. We request that all disclosures adhere to responsible guidelines, refrain from exploiting or sharing the issue publicly, and allow us the necessary time to investigate and implement a resolution.

Your cooperation in reporting any potential security concerns helps us maintain a secure environment for our users and fortify our systems against potential threats. Thank you for your support in keeping our platform safe and secure for everyone.

See which areas we like to focus on

Whats in scope

The following areas of our environemnts are what we define as in scope;

  • verofy.com business website
  • go.verofy.com customer portal
  • partner.verofy.com partner portal
  • verofy.support portal
  • verofy API endpoints
  • payfaclite.com partner website

To report a potential vulverability, please email us at: security@verofy.com

How to report

Please submit detailed information about the issue, including steps to reproduce, to our dedicated security team.

Verofy does not permit security research of our systems including the folllowing case types;

  • Denial-of-Service (DoS) attack including but not limited to SYN Flood, Smurf Attack, Ping Flood
  • Illegal or regulatory violations
  • Attempting to access our databases
  • Ransomware attacks or requests for compensation to discose vulnerabilities
  • Social engineering of any type
  • Exploiting a vulnerability or impacting or attempting to impact our services