SegMetrics · Vulnerability Disclosure

Segmetrics Vulnerability Disclosure

Vulnerability disclosure

SegMetrics publishes a vulnerability disclosure policy for reporting security issues. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

CompanyMarketingAnalyticsAttributionMarketing AnalyticsReportingBusiness IntelligenceAdvertisingSoftware-as-a-ServiceMCP
Program: security.txt present

Disclosure Policy

Policy

Security Contact

Contact
security@segmetrics.io

Source

Vulnerability Disclosure

segmetrics-vulnerability-disclosure.yml Raw ↑
generated: '2026-08-12'
method: searched
probe: true
probe_note: >-
  0-working/probe-security-programs.py returned vdp=none — its path list and keyword threshold
  did not fire on this site. A manual read of https://segmetrics.io/security/ (HTTP 200) found a
  real, named disclosure practice and a security contact, quoted below. This file is
  method: searched and must not be overwritten by a later probe pass.
policy:
- https://segmetrics.io/security/
contact:
- security@segmetrics.io
bug_bounty:
  program: false
  paid: false
  statement: >-
    Verbatim — "We do not currently operate a formal bug bounty program or pay for vulnerability
    reports, but we appreciate responsible disclosure and will work in good faith with
    researchers to confirm and remediate confirmed issues."
disclosure_practice:
  intake: 'email security@segmetrics.io with details'
  commitment: 'We review every report we receive.'
  constraints: >-
    Researchers are asked not to test for vulnerabilities against production in a way that
    risks Customer data or service availability.
  safe_harbor_published: false
  response_sla_published: false
security_txt:
  served: false
  path_probed: /.well-known/security.txt
  status: 404
  note: >-
    A published security contact with no RFC 9116 security.txt is the gap here — a scanner or
    agent cannot discover security@segmetrics.io mechanically. No SecurityTxt pointer is
    emitted.
evidence:
- {source: 'https://segmetrics.io/security/', kind: security-page, status: 200}
- {source: 'https://segmetrics.io/.well-known/security.txt', kind: security.txt, status: 404}
x-evidence:
  fetched: '2026-08-12'

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/segmetrics-vulnerability-disclosure"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.