Third Party Index

Snapshot 27537

Document
Security advisories
URL
https://bizzdesign.com/policies/vulnerability-disclosure-policy
Fetched
HTTP status
200
Content type
text/html; charset=UTF-8
Fetch mode
static
Size
1896619 bytes
SHA-256 (raw)
bfec854b2eacf6e366952aaf1d7307d92d0ed6820d4759b295b2ca53e45f0b87
SHA-256 (normalized text)
2e65fc86b5d789ea4a10059cc5378316710c39c9a097fa1b38bc4776c1a9a49d

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Skip to main content
Vulnerability Disclosure Policy
Privacy & Data Protection
Privacy Policy
Cookie Policy
Data Subject Rights Request Management Policy
Hopex Data Retention Policy
Personal Data Breach Response Procedure
Privacy and Security Policy Data Management, Incident Handling and Personal Data Breach Management
Ethics & Compliance
Code of Ethics and Business Conduct
Compliance Policy
Modern Slavery Statement
Sanction Policy
Bizzdesign Group Whistleblowing Policy
Bizzdesign Service Provider Policy 2026
Bizzdesign Health & Safety Policy United Kingdom & Ireland
Security
Vulnerability Disclosure Policy
Technical and Organisational Measures (TOM)
1. Policy Scope
At Bizzdesign, we do all we can to ensure our systems stay secure.
We appreciate any effort security researchers and experts make to help us improve the security of our systems, especially responsibly disclosing any finding that may impact us.
This includes our public websites, products, SaaS services and all supporting systems.
This program does not include any monetary compensation for reports.
2. Reporting a finding
If you believe you have found a potential security vulnerability in one of our systems, we encourage you to report it to us responsibly at security@bizzdesign.com.
Please ensure you include all details that may be useful for assessment and reproduction of the issue.
If you are a customer or are conducting an audit on behalf of one of our customers, we recommend you report findings through your usual support channels to ensure this context is taken into account.
3. Do not report
We encourage all submissions that affect the security of our systems.
However, if no proven exploitation is provided, we do exclude reporting of the following types of issues:
Outdated libraries
TLS configuration issues that only affect older browsers or operating systems
Incomplete or missing headers
General non-security bugs (please share with our support team instead)
Outputs of automated scans that have not been reviewed by a security researcher or expert
4. Responsible conduct
We encourage all responsible security investigations and disclosures. We respectfully require that you:
Give us reasonable time for investigation and mitigation, and do not disclose your findings to others during this time
Adhere to applicable laws and regulations, including but not limited to not exploiting vulnerabilities and avoiding privacy violations
Do not impact the availability of our systems