Trust Center
Responsible Disclosure Policy
We welcome reports from security researchers. If you believe you have found a vulnerability in a Quantum Shield Platform system, we want to hear from you — and we commit to handling your report fairly and quickly.
Scope & rules of engagement
- The quantumshieldplatform.com website and its subdomains.
- Public-facing APIs and the Photon Lite demonstration environment.
- Do not access, modify or delete data belonging to other users or customers.
- Do not perform denial-of-service testing, social engineering, or physical attacks.
Our commitments to you
- Acknowledgement of your report within 2 business days.
- A triage decision and severity assessment within 5 business days.
- No legal action against researchers acting in good faith within this policy's scope.
- Coordinated public disclosure only after a fix is deployed, with credit to the reporter if desired.
How to report
Send a detailed description of the vulnerability, steps to reproduce it, and any supporting evidence through our contact form, marking the subject line "Security Disclosure". Please encrypt sensitive details and do not disclose the issue publicly until we have confirmed a fix.
Reports are routed directly to our security engineering team.