ARCHITECTURE VERIFICATION PROGRAM

We permit the performance of security testing and reverse engineering of our protocols by authorized infosec communities.

Open-Security Approach

Our effectiveness is the result of transparent engineering. We allow the decompilation of our software for research purposes to prove the strength of our protection to management boards without hiding behind complex contracts.

Legal Safe Harbor

We pledge legal safety for engineers testing our architecture within their own environments and in good faith.

TESTING RULES

Exclusion of Load Testing (DDoS)

Attacks on the availability of our production data center infrastructure (DDoS, intentional API pool exhaustion) are outside the scope of the program.

Production Infrastructure

Scanning our active production infrastructure is strictly prohibited. We value the security and stability of our clients' environments.

ENGINEERING COLLABORATION PROPOSALS

Documented vectors bypassing segmentation and cryptography processes may form the basis for establishing research collaboration and ongoing engineering engagement.

VULNERABILITY REPORTING (CVD)

If critical vulnerabilities are identified, the Coordinated Vulnerability Disclosure (CVD) standard applies. Please report to [email protected] to patch software for active clients before publishing vulnerability details.

RESPONSIBLE DISCLOSURE

Found something? Coordinate with us before going public.

CONTACT SECURITY TEAM

Privacy by Design

This website uses only first-party cookies strictly necessary for its operation. Zero third-party trackers, zero external analytics platforms.

Read our Privacy Policy for details.