
Responsible
Disclosure Policy
Mediusware welcomes responsible security research that helps protect our website, systems, clients, and users. This page explains how to report a vulnerability safely, what information to include, and how we review security submissions.
Last updated: July 13, 2026
Help Us KeepMediusware Secure
Help Us Keep Mediusware Secure
We value good-faith reports that help identify security weaknesses without harming users, clients, systems, or data. Please follow these principles when testing or reporting security concerns.
Report Responsibly
Report vulnerability details through the correct channel without public disclosure.
Protect Data
Do not access, modify, copy, delete, download, or expose client, user, employee, or business data.
Avoid Disruption
Do not interrupt services, degrade performance, run destructive tests, or attempt social engineering.
Give Us Time
Allow Mediusware reasonable time to review, validate, prioritize, and resolve submitted security issues.
Table of content
Overview
This Responsible Disclosure Policy explains how security researchers, users, clients, and partners can responsibly report suspected vulnerabilities related to Mediusware's website, digital platforms, public systems, or service-related security concerns.
We appreciate good-faith efforts that help us improve security. Reports are reviewed based on severity, clarity, reproducibility, affected systems, potential business impact, and remediation requirements.
Scope
This policy applies to security concerns that may affect Mediusware-owned public web properties, official communication channels, and systems explicitly operated by Mediusware.
Out Of Scope
Some reports may not qualify as actionable security issues, especially when they do not present meaningful risk, cannot be reproduced, or require unrealistic conditions.
Safe Testing Rules
Researchers must test carefully and avoid actions that could harm Mediusware, our clients, users, data, systems, or service availability.
How To Report
If you believe you have discovered a security vulnerability, please contact Mediusware with a clear description of the issue and enough information for our team to reproduce and validate it.
What To Include
A complete report helps us review the issue faster. Please include clear, concise, and reproducible details.
Review Process
Mediusware reviews responsible disclosure submissions based on available information, severity, affected systems, and remediation complexity.
Researcher Expectations
We ask researchers to act in good faith and help protect users, clients, and Mediusware systems while reporting security concerns.
Prohibited Actions
The following activities are not permitted and may result in restricted access, legal review, or reporting to relevant authorities where appropriate.
Recognition
Mediusware appreciates responsible security reports. At this time, Mediusware does not guarantee monetary rewards, bounty payments, public credit, or formal recognition for submissions.
Where appropriate, and only with mutual agreement, we may acknowledge helpful reports or maintain private communication with the researcher.
Legal Note
Mediusware will review good-faith reports submitted under this policy and expects researchers to follow safe testing rules, avoid privacy violations, and not disrupt services. This policy does not grant permission to access, modify, destroy, or exfiltrate data.
Related Trust & Security Resources
Continue reviewing Mediusware's security, privacy, compliance, and data handling resources before starting a software development engagement.
Contact Mediusware
If you have questions about this Responsible Disclosure Policy, security reporting, project security, or data protection, please contact Mediusware.
