PAY.JP · Vulnerability Disclosure

Payjp Vulnerability Disclosure

Vulnerability disclosure

PAY.JP publishes a vulnerability disclosure policy for reporting security issues. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

PaymentsFinTechJapanCredit CardsSubscriptionsTokenization
Program: security.txt present

Disclosure Policy

Security Contact

Contact
https://help.pay.jp/
Contact
{"form" => "https://pay.jp/contact"}

Source

Vulnerability Disclosure

Raw ↑
generated: '2026-07-17'
method: searched
probe: true
source: https://pay.jp/.well-known/security.txt (probe)
securityTxt:
  present: false
  url: https://pay.jp/.well-known/security.txt
  http_status: 404
  note: No RFC 9116 security.txt is published at the pay.jp well-known path (404 at probe time).
contact:
- https://help.pay.jp/
- form: https://pay.jp/contact
policyFound: false
notes: >-
  No public vulnerability disclosure policy, bug-bounty program, or security.txt
  was located for PAY.JP as of the review date. Security issues appear to be routed
  through the PAY.JP help center / support contact. This is an honest record of
  absence; verify with PAY, Inc. before relying on a coordinated-disclosure channel.
evidence:
- source: https://pay.jp/.well-known/security.txt
  kind: security.txt (live probe, 404)