National Energy System Operator (NESO) · Vulnerability Disclosure
Neso Vulnerability Disclosure
Vulnerability disclosure
NESO runs a published vulnerability disclosure policy (VDP), not a paid bug bounty. The policy is advertised via an RFC 9116 security.txt on the corporate host and reports are taken through an embedded HackerOne submission form. The policy page states explicitly that NESO does not offer monetary rewards.
National Energy System Operator (NESO) runs a coordinated vulnerability disclosure program on Hackerone. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.
EnergyUnited KingdomElectricityEnergy MarketsGridOpen DataCarbonRenewablesGasDemand Response
Program: Hackerone
security.txt present
Disclosure Policy
Security Contact
Contact
https://hackerone.com/53e3b347-8e91-4fba-bc3f-0fd3cb5b4275/embedded_submissions/new?locale=en