Security
Responsible disclosure
A safe channel for good-faith security reports.
Report a concern
Email [email protected] with a concise description, affected URL or component, impact, and reproduction steps. Do not include credentials, personal information, or data obtained from another person.
Safe testing expectations
Use only your own accounts and data. Avoid privacy violations, service disruption, persistence, social engineering, physical testing, denial-of-service activity, and access to data beyond what is necessary to demonstrate the issue. Stop and report immediately if you encounter sensitive information.
Scope and authorization
This page is a reporting channel, not blanket authorization to test Senam, customer, partner, or third-party systems. Written authorization and an agreed scope are required for penetration testing.
Our response
We will acknowledge a credible report, investigate it, and coordinate remediation as appropriate. Senam does not currently operate a paid bug-bounty program.