Rilla · Vulnerability Disclosure

Rilla Vulnerability Disclosure

Vulnerability disclosure

Rilla runs a coordinated vulnerability disclosure program on Hackerone. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

CompanyAiConversation IntelligenceSalesCoachingSales EnablementSpeech AnalyticsMachine Learning
Program: Hackerone security.txt present

Disclosure Policy

Policy

Security Contact

Contact
mailto:support@rilla.com

Source

Vulnerability Disclosure

rilla-vulnerability-disclosure.yml Raw ↑
generated: '2026-08-14'
method: searched
probe: true
source: https://app.rilla.com/.well-known/security.txt
policy:
- https://www.rilla.com/inter/terms-and-conditions
contact:
- mailto:support@rilla.com
program:
  bug_bounty: false
  platform: null
  note: >-
    No bug bounty or named responsible-disclosure program was found on HackerOne,
    Bugcrowd or Intigriti, and https://www.rilla.com/security is a placeholder page
    whose body is Lorem ipsum. The only disclosure channel Rilla publishes is the
    RFC 9116 security.txt served from the application host.
issues:
- id: expired-security-txt
  detail: 'Expires field reads 2025-9-03T23:59:59.000Z — in the past, and not a
    zero-padded ISO 8601 timestamp as RFC 9116 requires.'
- id: policy-url-404
  detail: 'The Policy: URL https://www.rilla.com/inter/terms-and-conditions returns
    HTTP 404; the live terms page is https://www.rilla.com/terms-and-conditions.'
- id: generic-contact
  detail: Contact is the general support mailbox (support@rilla.com), not a dedicated
    security address.
evidence:
- source: well-known/rilla-security.txt
  kind: security.txt
  url: https://app.rilla.com/.well-known/security.txt
  http_status: 200
- source: https://www.rilla.com/inter/terms-and-conditions
  kind: policy-url-probe
  http_status: 404
- source: https://www.rilla.com/security
  kind: disclosure-page-probe
  http_status: 200
  note: placeholder page, body is Lorem ipsum — no security content