configure8 is committed to ensuring the security of our systems and protecting our users’ data. We appreciate the efforts of security researchers who help us identify and fix vulnerabilities in our systems. We do not take legal action against researchers who report vulnerabilities to us in a responsible and ethical manner, following the guidelines below. We handle all reports with utmost urgency and care.
Our Responsible Disclosure Program encompasses app.configure8.io.
Please report any security issues you find to security@configure8.io. If your submission contains any sensitive vulnerability information, please encrypt it using our PGP public key at the bottom of this page.
We may offer a reward to thank you for reporting a valid vulnerability to us. The reward amount will depend on the severity, impact, and uniqueness of the vulnerability. We will review each submission individually and decide whether to offer a reward and how much. Our decision is final and non-negotiable.
We are grateful for your responsible disclosure and your collaboration with us to enhance our security! We recognize the skills and efforts you have invested in finding these issues and contacting us. Thank you for making the configure8 a safer application.
If you need to share confidential details about a vulnerability or prefer to communicate with us securely, you can use the PGP key below to encrypt your message to us.