Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
A proposed standard which allows websites to define security policies (securitytxt.org)
3 points by _wldu on Dec 29, 2020 | hide | past | favorite | 1 comment


We use this and we see there are special crawler inspecting the file. Even special security scanner that access the file before running their tests (e.g. checking for XSS). It's surprising we get contacted by 'bug hunters' who are not aware, don't contact us on the listed email address, don't read the linked documented. When it comes to encrypted email using our listed public key we never received one.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: