Security at Newf Technology
Responsible disclosure and vulnerability reporting
Reporting a Vulnerability
If you believe you have found a security vulnerability in any Newf Technology product or service, please report it to us at security@newf.tech.
We acknowledge every report and will tell you what we found. We are a small team, so we do not publish a response clock we cannot hold to.
Scope
- newf.tech
Out of Scope
- Social engineering (including phishing)
- Denial of service attacks
- Spam
- Issues requiring physical access to a device or facility
Safe Harbor
We will not pursue legal action against anyone who reports vulnerabilities in good faith following responsible disclosure practices. We ask that you make a good faith effort to avoid privacy violations, data destruction, and service disruption during your research.
Machine-readable security policy: /.well-known/security.txt