Vulnerability Disclosure Program
At Ihakimi, the security of our platform and the privacy of our users are top priorities. We are committed to working with the security community to identify and resolve vulnerabilities in a responsible manner.
If you believe you’ve discovered a security issue, we encourage you to report it to us so we can investigate and resolve it promptly.
Scope
This program covers vulnerabilities in:
- app.ihakimi.com
- any subdomains under ihakimi.com
- APIs and backend systems used by Ihakimi
Out of scope:
- Denial of Service (DoS) attacks
- Social engineering of Ihakimi staff or customers
- Physical attacks
- Use of automated vulnerability scanners
Guidelines for Responsible Disclosure
To help us triage and address your report effectively:
- Provide clear, detailed steps to reproduce the issue.
- Avoid accessing or modifying any data that does not belong to you.
- Do not publicly disclose the vulnerability before we have addressed it.
- Act in good faith and do not use the vulnerability for malicious purposes.
Safe Harbor
We will not pursue legal action against individuals who:
- Report vulnerabilities in good faith.
- Follow this disclosure program and its guidelines.
- Avoid violating any applicable laws.
How to Report a Vulnerability
Please email us at [email protected] with the following details:
- A description of the vulnerability
- Steps to reproduce the issue
- Any relevant screenshots, URLs, or code snippets
- Your contact information (optional if you’d like credit or follow-up)
What You Can Expect
Once you submit a report:
- You’ll receive an acknowledgment within 3 business days.
- Our team will investigate and validate the report.
- If the vulnerability is confirmed, we’ll work to resolve it as quickly as possible.
- We’ll keep you updated throughout the process.
Recognition
While we don’t offer a formal bug bounty program at this time, we deeply appreciate the time and effort researchers take to help us. When appropriate, we may offer public acknowledgment or future incentives.
If you have any questions about this program, reach out to us at [email protected].
Thank you for helping make Ihakimi safer for everyone.