Sailthru · Vulnerability Disclosure

Sailthru Vulnerability Disclosure

Vulnerability disclosure

Sailthru runs a coordinated vulnerability disclosure program on Bugcrowd. A machine-readable /.well-known/security.txt is served.

CompanyEmail MarketingMarketing AutomationPersonalizationCustomer Data PlatformTransactional EmailSMSPush NotificationsRetailMedia and Publishing
Program: Bugcrowd security.txt present

Disclosure Policy

Policy

Security Contact

Source

Vulnerability Disclosure

sailthru-vulnerability-disclosure.yml Raw ↑
generated: '2026-08-12'
method: searched
probe: true
source: https://trust.zetaglobal.com/
policy:
- https://bugcrowd.com/engagements/cheetah-vdp
contact: []
program:
  type: vulnerability-disclosure-program
  platform: Bugcrowd
  name: Cheetah VDP
  url: https://bugcrowd.com/engagements/cheetah-vdp
  bounty: unknown
note: >-
  Sailthru serves no /.well-known/security.txt on any of its hosts
  (api.sailthru.com, products.zetaglobal.com, zetaglobal.com all 404) and
  publishes no responsible-disclosure page of its own. The disclosure route is
  the Bugcrowd engagement inherited from Cheetah Digital and now covering the
  former Marigold enterprise products under Zeta Global; it is linked from the
  Zeta Global Trust Center with the text "If you think you may have discovered
  a vulnerability, please send us a note." The Zeta trust center also lists a
  "Responsible Disclosure" control at full maturity.
evidence:
- source: https://trust.zetaglobal.com/
  kind: trust-center-link
  http_status: 200
- source: https://bugcrowd.com/engagements/cheetah-vdp
  kind: bug-bounty-platform
  http_status: 200
- source: https://api.sailthru.com/.well-known/security.txt
  kind: security.txt
  http_status: 404
- source: https://zetaglobal.com/.well-known/security.txt
  kind: security.txt
  http_status: 404

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/sailthru-vulnerability-disclosure"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.