Reporting a Vulnerability
If you believe you have discovered a security vulnerability in our products or services, please report it to us as soon as possible. We appreciate your cooperation in responsibly investigating and reporting potential security issues.
To report a vulnerability, please use the following channels:
- Email: support@cynte.com
- Encryption: https://cynte.com/security-pgp-key.asc
- Security.txt File: https://cynte.com/.well-known/security.txt
Guidelines for Responsible Disclosure
We ask that security researchers follow these guidelines when reporting vulnerabilities:
- Provide detailed information, including steps to reproduce the issue.
- Avoid exploiting the vulnerability beyond what is necessary for validation.
- Do not publicly disclose the vulnerability before we have addressed it.
- Allow us reasonable time to investigate and remediate the issue before public disclosure.
Our Commitment
We are committed to working with security researchers and will make every effort to:
- Acknowledge receipt of vulnerability reports within 5 business days.
- Investigate the reported issue and provide updates on our progress.
- Credit researchers who responsibly disclose vulnerabilities (if they wish to be acknowledged).
Legal Safe Harbor
We will not initiate legal action against researchers who:
- Adhere to this policy and follow responsible disclosure practices.
- Conduct research in good faith without exploiting vulnerabilities for malicious purposes.
Thank you for helping us keep CYNTE Technologies and our customers secure.
