Third Party Index

Snapshot 18896

Document
Security page
URL
https://wolfia.com/security
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
106125 bytes
SHA-256 (raw)
85004b15990b884155d4161a489500733e1d453f1bee064ba004162af9dd808d
SHA-256 (normalized text)
dd0925f5eb70fdfdc2fae924a21f8fde1f8c8e24a8985f547c17640438d5bc18

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Security
Security at Wolfia
This page describes how to report a security issue to Wolfia and what to expect when you do.
Built for GRC, customer trust and sales engineering teams.
SOC 2 Type IIVisit our Trust Center
Disclosure
Reporting a vulnerability
If you believe you have found a security issue in Wolfia, email [email protected] with “[SECURITY]” in the subject line. Include the affected URL or endpoint, steps to reproduce, and the account you used. Send one issue per email.
Please report privately and allow us 90 days to respond before any public disclosure.
Coverage
Scope
Our vulnerability disclosure program covers the Wolfia application at wolfia.com, tested only through accounts and data you created yourself. All customer data, customer trust centers, third-party services we integrate with, and any host not listed here are out of scope.
Testing outside this scope, or testing that has not been agreed with us in writing beforehand, is not authorized.
Safe harbor
Rules of engagement
Research that follows these rules is authorized under safe harbor, and we will not pursue legal action for it.
Use only accounts, organizations, and data you created yourself. Never access or modify another customer’s data; if you reach it by accident, stop and report immediately.
No automated scanning, high-volume requests, or anything that could degrade availability.
No social engineering of Wolfia staff or customers.
Stop at proof of concept. Do not go further than is needed to demonstrate the issue once.
Response
What to expect
This is a responsible disclosure program without bounties. We do not offer monetary rewards for security reports. Out-of-scope reports may be reviewed at our discretion and are not eligible for acknowledgement.
We acknowledge in-scope reports within five business days, and confirmed findings are fixed on a timeline set by severity. Automated tool output without a demonstrated impact is closed without response.
Get started
Take the waiting out of your sales cycle
See Wolfia answer your security questionnaires, RFPs, contract redlines and trust center requests. Unlimited seats and outcome-based pricing.
Book a demo