Policy
Responsible Disclosure
Last updated: June 2026
Stealth Layer Security welcomes reports of security vulnerabilities in our own systems and website. We are committed to working with researchers in good faith to address valid reports promptly.
Scope
This policy covers systems owned and operated by Stealth Layer Security, including the stealthlayersecurity.com website. It does not authorize testing of client systems or any third-party service.
How to report
Email security@stealthlayersecurity.com with a clear description of the issue, the affected URL or component, steps to reproduce, and any supporting evidence. Please do not include sensitive data beyond what is needed to demonstrate the issue.
What to avoid
Please avoid actions that degrade service availability, access or modify data that does not belong to you, or affect users other than your own test accounts. Automated scanning must be rate-limited and clearly identifiable.
Our commitments
We will acknowledge valid reports, keep researchers informed about remediation progress, and credit reporters who wish to be credited when an issue is resolved.
Safe harbor
Research conducted in good faith and in line with this policy will not be pursued or escalated by Stealth Layer Security. This safe harbor applies only to in-scope systems.