Security & Responsible Disclosure.
Websoul Digital is committed to ensuring the security and integrity of our systems and client delivery. We welcome reports of potential security vulnerabilities.
Our Approach
We operate with a secure-by-design methodology across all internal systems and client engagements. We prioritise the confidentiality and integrity of sovereign data.
Report Vulnerabilities
If you believe you've discovered a security vulnerability in a Websoul Digital system, please notify us via hello@websoul.com.au.
Disclosure Policy
When reporting a potential vulnerability, we ask that you:
- Allow us a reasonable amount of time to resolve the issue before making it public.
- Make a good faith effort to avoid privacy violations and data destruction.
- Avoid interacting with user accounts or data without permission.
- Provide sufficient information to reproduce the issue.
Exclusions
Please note that we do not have a public bug bounty program and do not offer financial compensation for reports. We appreciate the community's support in keeping our sovereign systems secure.
PGP Keys & Secure Comms
For sensitive security reports requiring encrypted transmission, please contact us at hello@websoul.com.au to request a PGP public key or a secure transmission link.