Embrace · Vulnerability Disclosure
Embrace Vulnerability Disclosure
Vulnerability disclosure
Embrace publishes a security contact, but no vulnerability disclosure policy. The only machine-readable contact found is the iodef entry in the domain's CAA record. There is no security.txt on any Embrace host, no responsible-disclosure page, and no bug bounty program on HackerOne or Bugcrowd. Recorded as a partial hit: a researcher can find an address, but not the terms under which to use it.
Embrace runs a coordinated vulnerability disclosure program on Hackerone. A dedicated security contact is published.
CompanyObservabilityMonitoringMobileReal User MonitoringOpenTelemetryMetricsCrash ReportingApplication Performance MonitoringDeveloper ToolsModel Context Protocol
Program: Hackerone
Disclosure Policy
Security Contact
Contact
security@embrace.io