LaserData · Vulnerability Disclosure

Laserdata Vulnerability Disclosure

Vulnerability disclosure

LaserData runs a coordinated vulnerability disclosure program on Hackerone. A dedicated security contact is published.

StreamingMessage StreamingEvent StreamingData InfrastructureReal TimeApache IggyRustCloud InfrastructureAI AgentsObservabilityCompany
Program: Hackerone

Disclosure Policy

Policy

Security Contact

Contact
oss@laserdata.com

Source

Vulnerability Disclosure

Raw ↑
generated: '2026-07-19'
method: searched
probe: true
source: https://github.com/laserdata/laser-sdk/blob/main/SECURITY.md
notes: >-
  LaserData publishes no /.well-known/security.txt and no bug-bounty program (HackerOne,
  Bugcrowd, Intigriti all absent). It does publish a real, specific security policy in its
  first-party SDK repository, covering supported versions, the private reporting channel, and
  an acknowledgement commitment.
policy:
- https://github.com/laserdata/laser-sdk/blob/main/SECURITY.md
contact:
- oss@laserdata.com
channels:
- kind: github-private-vulnerability-reporting
  url: https://github.com/laserdata/laser-sdk/security
  description: Preferred channel - the repository Security tab, "Report a vulnerability".
- kind: email
  url: mailto:oss@laserdata.com
  description: Fallback when GitHub private reporting is unavailable.
policy_terms:
  public_issues_prohibited: true
  supported_versions: Pre-1.0. Only the latest published 0.0.x release line receives security
    fixes.
  acknowledgement_target: within a few business days
  coordinated_disclosure: true
  explicit_scope: The laser-wire crate decodes untrusted bytes under a never-panic guarantee
    backed by a robustness suite and fuzzing; a decode crash or panic on hostile input is
    in scope.
bug_bounty: null
security_txt: null
evidence:
- source: https://github.com/laserdata/laser-sdk/blob/main/SECURITY.md
  kind: security-policy
  keywords:
  - report a vulnerability
  - coordinated disclosure
  - oss@laserdata.com