We won’t take legal action against you as a penetration tester if you observe the law, and we won’t publish your identity by default.</p> <p>Besides, we run a bug bounty program to ensure the highest level of security and privacy. Everyone is eligible to participate in the program as described by this policy.</p>Disclosure process<p>We are big fans of “coordinated disclosure.” Due to this, we stay with the following process:</p>1. You start to test for security vulnerabilities<p>First of all, thanks for helping us to improve the security of the InfoSec Handbook.