Fortanix · Vulnerability Disclosure

Fortanix Vulnerability Disclosure

Vulnerability disclosure

Fortanix runs a coordinated vulnerability disclosure program on Hackerone. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

CompanySecurityEncryptionKey ManagementCryptographyConfidential ComputingHSMData SecurityPost-QuantumSecrets Management
Program: Hackerone security.txt present

Disclosure Policy

Policy

Security Contact

Contact
mailto:security@fortanix.com

Source

Vulnerability Disclosure

Raw ↑
generated: '2026-08-01'
method: searched
probe: true
source: https://www.fortanix.com/.well-known/security.txt
policy:
- https://www.fortanix.com/trust-center
contact:
- mailto:security@fortanix.com
encryption:
- https://www.fortanix.com/trust-center/pgp-key
preferred_languages:
- en
expires: '2027-04-30T13:20:56.608Z'
canonical:
- https://www.fortanix.com/.well-known/security.txt
- https://www.fortanix.com/security.txt
signed: true
signature_note: 'The published security.txt is a PGP-signed message (Hash: SHA512),
  as recommended by RFC 9116 section 2.3.'
bug_bounty: null
statement: 'The Fortanix Trust Center states that external parties who believe they
  have found a security issue in any Fortanix product or infrastructure are invited
  to report their findings to the Fortanix security team. No public bug-bounty program
  (HackerOne / Bugcrowd / Intigriti) was found.'
evidence:
- source: https://www.fortanix.com/.well-known/security.txt
  kind: security.txt (live probe)
  http_status: 200
  fetched: '2026-08-01'
- source: https://www.fortanix.com/trust-center
  kind: disclosure statement
  http_status: 200
  fetched: '2026-08-01'
- source: well-known/fortanix-security.txt
  kind: verbatim harvested copy