ARCHITECTURE VERIFICATION PROGRAM
We permit the performance of security testing and reverse engineering of our protocols by authorized infosec communities.
Open-Security Approach
Our effectiveness is the result of transparent engineering. We allow the decompilation of our software for research purposes to prove the strength of our protection to management boards without hiding behind complex contracts.
Legal Safe Harbor
We pledge legal safety for engineers testing our architecture within their own environments and in good faith.
TESTING RULES
Exclusion of Load Testing (DDoS)
Attacks on the availability of our production data center infrastructure (DDoS, intentional API pool exhaustion) are outside the scope of the program.
Production Infrastructure
Scanning our active production infrastructure is strictly prohibited. We value the security and stability of our clients' environments.
ENGINEERING COLLABORATION PROPOSALS
Documented vectors bypassing segmentation and cryptography processes may form the basis for establishing research collaboration and ongoing engineering engagement.
VULNERABILITY REPORTING (CVD)
If critical vulnerabilities are identified, the Coordinated Vulnerability Disclosure (CVD) standard applies. Please report to [email protected] to patch software for active clients before publishing vulnerability details.