Responsible Disclosure Policy

CyberSafeX Technology LLP is committed to maintaining the security of our systems, platforms, and services. We value the efforts of security researchers and systems, platforms, and services. We value the efforts of security researchers and welcome responsible vulnerability disclosures that help improve our security posture.This Responsible Disclosure Policy outlines how to report security vulnerabilities responsibly and how CyberSafeX will respond.

Our Commitment to Security

CyberSafeX takes information security seriously and continuously works to:

• Protect our systems, platforms, and data

• Identify and remediate security vulnerabilities

• Follow responsible and ethical security practices

We encourage responsible disclosure to help us maintain a secure environment for our clients, partners, and users.

Scope of This Policy

This policy applies to:

  • CyberSafeX public-facing websites and domains
  • CyberSafeX-owned applications and platforms
  • Services and infrastructure directly managed by CyberSafeX


This policy does not cover:

  • Third-party systems or services not controlled by CyberSafeX
  • Customer-owned systems unless explicitly authorized in writing

How to Report a Vulnerability

If you believe you have discovered a security vulnerability, please report it responsibly by emailing:

mukund@cybersafex.com

Please include the following details:

  • Description of the vulnerability
  • Affected URL, system, or component
  • Steps to reproduce the issue (if applicable)
  • Proof of concept (screenshots, logs, or non-destructive evidence)
  • Your contact information (optional but recommended)

Clear and detailed reports help us respond effectively.

Guidelines for Responsible Disclosure

We ask that security researchers:

  • Act in good faith and avoid privacy violations
  • Do not exploit vulnerabilities beyond proof of concept
  • Do not access, modify, or delete data
  • Do not disrupt services or impact availability
  • Do not publicly disclose vulnerabilities before remediation
  • Provide reasonable time for investigation and resolution

Unauthorized testing such as denial-of-service attacks, social engineering, or physical attacks is strictly prohibited.

Safe Harbor

CyberSafeX will not pursue legal action against individuals who:

  • Follow this Responsible Disclosure Policy
  • Make a good-faith effort to avoid harm
  • Do not exploit vulnerabilities for personal gain
  • Do not violate applicable laws

This assurance applies only to activities conducted within the scope of this policy.

Our Response Process

When a valid vulnerability report is received, CyberSafeX aims to:

1. Acknowledge receipt within a reasonable timeframe

2. Validate and assess the reported issue

3. Prioritize remediation based on severity and risk

4. Communicate progress where appropriate

5. Remediate the vulnerability in a timely manner

Response timelines may vary based on complexity and impact.

Public Disclosure

CyberSafeX requests that vulnerabilities not be publicly disclosed until:

  • The issue has been resolved, or
  • We have provided explicit permission to disclose

Coordinated disclosure helps protect users and systems from exploitation.

Recognition

At this time, CyberSafex does not operate a public bug bounty program.

However, we appreciate responsible disclosures and may acknowledge contributors at our discretion.

Legal Considerations

This policy does not grant permission to:

  • Access data without authorization
  • Test systems outside the defined scope
  • Violate any applicable local, national, or international laws

All activities must comply with relevant legal requirements.

Changes to This Policy

CyberSafex may update this Responsible Disclosure Policy periodically to reflect changes in security practices or legal requirements. Updates will be posted on this

page.

Contact Information

For vulnerability reporting or questions regarding this policy, please contact:

CyberSafex Technology LLP

Email: mukund@cybersafex.com

Website: https://cybersafex.com

Scroll to Top