Responsible Disclosure
How to report a potential vulnerability affecting Just Scope IT.
Last updated: July 27, 2026
Reporting
Email reports to [email protected] with enough detail to reproduce and validate the issue. Helpful details include affected URL, tenant context, steps to reproduce, screenshots, impact, and whether any data may have been exposed.
Safe Harbor Expectations
- Do not access, modify, delete, export, or disclose customer data.
- Do not disrupt service availability or attempt denial-of-service testing.
- Do not use social engineering, phishing, physical attacks, or malware.
- Stop testing and report immediately if you encounter non-public data.
Response
Just Scope IT reviews vulnerability reports, prioritizes remediation based on severity and exploitability, and may request additional details during validation. Public disclosure should wait until the issue is remediated and disclosure timing is coordinated.