Beachtung ⚡️ Ostrom™

Programm zur verantwortungsvollen Offenlegung

Ostrom's Vulnerability Disclosure Policy

Vulnerability Disclosure Philosophy

Ostrom believes effective disclosure of security vulnerabilities requires mutual trust, respect, transparency and common good between Ostrom and Security Researchers. Together, our vigilant expertise promotes the continued security and privacy of Ostrom customers, products, and services.

Security Researchers

Ostrom accepts vulnerability reports from all sources such as independent security researchers, industry partners, vendors, customers and consultants. Ostrom defines a security vulnerability as an unintended weakness or exposure that could be used to compromise the integrity, availability or confidentiality of our products and services.

Scope

This policy applies to any digital assets owned, operated, or maintained by Ostrom, including public facing websites.

Our Commitment to Researchers

What We Ask of Researchers

Vulnerability Reporting

Ostrom recommends that security researchers share the details of any suspected vulnerabilities across any asset owned, controlled, or operated by Ostrom (or that would reasonably impact the security of Ostrom and our users) using the web form below. The Ostrom Security team will acknowledge receipt of each vulnerability report, conduct a thorough investigation, and then take appropriate action for resolution.

Submission form

All fields are required unless marked optional.

Summary title Help us get an idea of what this vulnerability is about.

Target Select the vulnerable target

Targets that are not explicitly in scope may not be eligible for acceptance.

TargetSelect target...https://www.ostrom.de/Ostrom Android applicationOstrom iOS Application

Vulnerability details

URL / Location of vulnerability(optional) For example: https://www.ostrom.de/en/compliance

Description Describe the vulnerability and its impact.

Provide a proof of concept or replication steps.

Maximum 25,000 characters.

Attachments(optional) Attach proof-of-concept scripts, screenshots, screen recordings, etc.

Upload File Max file size 10MB.

Uploading... fileuploaded.jpg

Upload failed. Max size for files is 10 MB.

Thank you! Your submission has been received!

Oops! Something went wrong while submitting the form.