AAVantgarde Bio · Vulnerability Disclosure

Aavantgardebio Vulnerability Disclosure

Vulnerability disclosure

AAVantgarde Bio runs a coordinated vulnerability disclosure program on Hackerone. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

CompanyBiotechnologyGene TherapyLife SciencesPharmaceuticalsClinical TrialsOphthalmologyRare DiseaseHealthcareItaly
Program: Hackerone security.txt present

Disclosure Policy

Security Contact

Contact
mailto:webservices@sampsonmay.com

Source

Vulnerability Disclosure

aavantgardebio-vulnerability-disclosure.yml Raw ↑
generated: '2026-09-05'
method: probed
source: https://www.aavantgarde.com/.well-known/security.txt
http_status: 200
program: none
note: >-
  AAVantgarde Bio serves a security.txt but does NOT operate a vulnerability disclosure
  program in any meaningful sense, and this artifact records that distinction rather
  than crediting the file's mere presence. The document carries only Contact and
  Expires. There is no Policy field, so no disclosure terms are published anywhere. The
  Expires value is 2026-01-01T23:59:00.000Z, which was already in the past when probed
  on 2026-09-05 — RFC 9116 section 2.5.5 says an expired file must not be used. The
  Contact address (webservices@sampsonmay.com) belongs to Sampson May, the agency that
  built the corporate website, not to an AAVantgarde security function. Searches found
  no HackerOne, Bugcrowd or Intigriti program and no /security, /responsible-disclosure
  or /trust page on aavantgarde.com. For those reasons NO canonical `Security` pointer
  is emitted in apis.yml: the check it feeds asserts a published disclosure policy, and
  this company has not published one.
contact:
- mailto:webservices@sampsonmay.com
policy_url: null
expires: '2026-01-01T23:59:00.000Z'
expired: true
bug_bounty: null
evidence:
- source: https://www.aavantgarde.com/.well-known/security.txt
  status: 200
  kind: security.txt (RFC 9116), fetched verbatim to well-known/aavantgardebio-security.txt
- source: https://www.aavantgarde.com/.well-known/security.txt
  status: 200
  kind: no Policy field present

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/aavantgardebio-vulnerability-disclosure"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.