Compliance ⚡️ Ostrom™

Responsible Disclosure Program

Ostrom's Vulnerability Disclosure Policy

Vulnerability Disclosure Philosophy

Ostrom believes effective disclosure of security vulnerabilities requires mutual trust, respect, transparency and common good between Ostrom and Security Researchers. Together, our vigilant expertise promotes the continued security and privacy of Ostrom customers, products, and services.

Security Researchers

Ostrom accepts vulnerability reports from all sources such as independent security researchers, industry partners, vendors, customers and consultants. Ostrom defines a security vulnerability as an unintended weakness or exposure that could be used to compromise the integrity, availability or confidentiality of our products and services.

Scope

This policy applies to any digital assets owned, operated, or maintained by Ostrom, including public facing websites.

Our Commitment to Researchers

What We Ask of Researchers

Vulnerability Reporting

Ostrom recommends that security researchers share the details of any suspected vulnerabilities across any asset owned, controlled, or operated by Ostrom (or that would reasonably impact the security of Ostrom and our users) using the web form below. The Ostrom Security team will acknowledge receipt of each vulnerability report, conduct a thorough investigation, and then take appropriate action for resolution.

Submission form

All fields are required unless marked optional.

Summary title

Help us get an idea of what this vulnerability is about.

Target

Select the vulnerable target

Targets that are not explicitly in scope may not be eligible for acceptance.

TargetSelect target...https://www.ostrom.de/Ostrom Android applicationOstrom iOS Application

Vulnerability details

URL / Location of vulnerability(optional)

For example: https://www.ostrom.de/en/compliance

Description

Describe the vulnerability and its impact.

Provide a proof of concept or replication steps.

Maximum 25,000 characters.

Attachments(optional)

Attach proof-of-concept scripts, screenshots, screen recordings, etc.

Upload File

Max file size 10MB.

Thank you! Your submission has been received!

Oops! Something went wrong while submitting the form.