Skip to main content

How to report a security issue

If you've found a potential security vulnerability in the Evidenced platform, here's how to report it to our team.

Written by Philip Spain

We take the security of the Evidenced platform seriously. If you've discovered a potential vulnerability, please report it to us promptly so we can investigate and respond.
​

How to report

Email us directly at security@evidenced.app. Please include:

  • A description of the issue and the potential impact

  • Steps to reproduce, including any relevant URLs or screenshots

  • Your contact details so we can follow up if needed

What to expect

Once we receive your report:

  • We'll acknowledge receipt within 1 business day

  • We'll confirm whether the issue is valid within 5 business days

  • We'll keep you updated as we work to resolve it

Responsible disclosure

We ask that you give us a reasonable opportunity to address the issue before any public disclosure. Please also avoid accessing or modifying data beyond what is necessary to demonstrate the vulnerability, and do not take any action that could affect service availability for other users.

We'll work with you in good faith throughout the process and let you know once the issue has been resolved.

Did this answer your question?