/ SECURITY POLICY
Security Policy
ISC4IT welcomes responsible security reporting for this website and related public web assets.
Reporting channels
Use security@isc4it.cloud for vulnerability disclosure. Operational coordination may also use ops@isc4it.cloud when strictly necessary.
Scope
This policy applies to the public ISC4IT website, its static assets, and related public web exposure under isc4it.cloud unless explicitly excluded.
What to include
Please include affected URL, issue description, reproduction steps, potential impact, and any proof of concept necessary to validate the finding safely.
Safe harbor
Good-faith research intended to improve security will be treated as authorized provided it avoids privacy violations, service disruption, data destruction, and persistence.
Response expectations
ISC4IT will review reported issues, validate impact, and respond in a commercially reasonable timeframe depending on severity and operational context.