Skip to main content

Security at Newf Technology

Responsible disclosure and vulnerability reporting

Reporting a Vulnerability

If you believe you have found a security vulnerability in any Newf Technology product or service, please report it to us at security@newf.tech.

We acknowledge every report and will tell you what we found. We are a small team, so we do not publish a response clock we cannot hold to.

Scope

  • newf.tech

Out of Scope

  • Social engineering (including phishing)
  • Denial of service attacks
  • Spam
  • Issues requiring physical access to a device or facility

Safe Harbor

We will not pursue legal action against anyone who reports vulnerabilities in good faith following responsible disclosure practices. We ask that you make a good faith effort to avoid privacy violations, data destruction, and service disruption during your research.

Machine-readable security policy: /.well-known/security.txt