Pennylane · Vulnerability Disclosure

Pennylane Vulnerability Disclosure

Vulnerability disclosure

Pennylane publishes a vulnerability disclosure policy for reporting security issues. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

AccountingInvoicingFintechFinancial DataBankingFranceSME
Program: security.txt present

Disclosure Policy

Policy
Policy
Policy

Security Contact

Contact
mailto:appsec@pennylane.com

Source

Vulnerability Disclosure

Raw ↑
generated: '2026-07-17'
method: searched
probe: true
source: https://app.pennylane.com/.well-known/security.txt
contact:
- mailto:appsec@pennylane.com
policy:
  bug_bounty: false
  bug_bounty_note: >-
    No formal bug bounty program is open at this time, but Pennylane states it will
    review findings and may send a reward for sufficiently significant vulnerabilities.
  guidance: >-
    Researchers are asked to limit the rate of scanning tools and avoid denial-of-service
    tests against the production app to prevent disruption.
preferred_languages: en
expires: '2050-12-25T10:56:00Z'
evidence:
- source: https://app.pennylane.com/.well-known/security.txt
  kind: security.txt (live probe, HTTP 200)