Third Party Index

Snapshot 76089

Document
Security advisories
URL
https://www.bazaarvoice.com/legal/vulnerability-disclosure-policy/
Fetched
HTTP status
200
Content type
text/html; charset=UTF-8
Fetch mode
static
Size
109319 bytes
SHA-256 (raw)
29356f29edb35ea7bd34f57d79222cfe2a4ce36f8b54107c26ae53f14fbb3fd8
SHA-256 (normalized text)
864160db413909e6abc28c5ab160476ccd01c29381e7c4a77b4a98d845a9b6e4

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Vulnerability Disclosure Policy
On this page
Testing
Reporting
Compensation Requests
Our Commitment
In this section
Legal
Privacy Policy
Terms of Use
API Terms of Use
Authenticity Policy
Client Agreements
Creator Terms of Service
Digital Accessibility Statement
Corporate Compliance Program
Digital Millennium Copyright Act
Vulnerability Disclosure Policy
Data security is a priority at Bazaarvoice. If you are a security researcher and believe that you have discovered a security bug or vulnerability in any of our Services, we appreciate your help in disclosing that vulnerability in a responsible manner. Bazaarvoice will engage with security researchers when vulnerabilities are reported to us in accordance with this Vulnerability Disclosure Policy. We will validate, respond and fix vulnerabilities in accordance with our commitment to security and privacy. We won’t take legal action against those who discover and report security vulnerabilities in accordance with this Vulnerability Disclosure Policy. Bazaarvoice reserves all of its legal rights in the event of any noncompliance.
Testing
You are prohibited from:
Executing or attempting to execute any “Denial of Service” attack
Knowingly posting transmitting, uploading, linking to, sending or storing any Malicious Software
Attacks on physical security, use of social engineering, distributed denial of service or spam
Testing in a manner that would degrade the operation of Bazaarvoice services
Testing third party applications or websites or services that integrate with or link to Bazaarvoice services
Taking advantage of the vulnerability, for example by downloading more data than necessary to demonstrate the vulnerability or deleting or modifying data
Reporting
Share the details of any suspected vulnerabilities with the Bazaarvoice Security Team by sending an email to security@bazaarvoice.com. Encrypt your findings by using our public PGP key. Please do not publicly disclose these details without express written consent from Bazaarvoice.
Please include the following:
Vulnerability details with information to allow us to efficiently reproduce your steps
Your email address
Your Twitter handle or website (optional)
Compensation Requests
Requests for monetary compensation in connection with any identified or suspected vulnerability will be deemed noncompliant with this Vulnerability Disclosure Policy.
Our Commitment
If you identify a verified security vulnerability in compliance with this Vulnerability Disclosure Policy, Bazaarvoice commits to:
Promptly acknowledge receipt of your vulnerability report
Provide an estimated timetable for resolution of the vulnerability
Notify you when the vulnerability is fixed
Publicly acknowledge your responsible disclosure