Report a vulnerability
Effective as of March 22, 2026. This summary is provided for transparency; it is not legal advice.
Report a vulnerability
We welcome responsible security reports related to aTx Trusted Advisory. If you believe you found a vulnerability, report it privately through approved support or security channels.
Responsible disclosure expectations
- Avoid actions that degrade service availability or compromise user data.
- Do not access data that is not yours or exceed authorized test boundaries.
- Provide reasonable time for investigation and remediation before public disclosure.
What to include in a report
Include clear reproduction steps, impact level, affected route(s), and proof-of-concept details where possible. Do not include private keys or credentials in reports.
Safe harbor intent
We do not pursue legal action for good-faith, coordinated research performed within these expectations and applicable law. This statement does not authorize unlawful testing.
Response process
Reports are triaged by severity. We aim to acknowledge receipt promptly, request details if needed, and communicate remediation progress when appropriate.