The fine print
Vulnerability Disclosure
Effective June 24, 2026
Entrepreneuria Global, Inc. ("Entrepreneuria", "we", "our", or "us") values the security community and welcomes responsible reports of potential vulnerabilities affecting our websites, applications, APIs, integrations, and AI-powered services.
How to Report
Please email suspected vulnerabilities to security@entrepreneuria.io. Include enough detail for us to understand, reproduce, and assess the issue.
What to Include
- A clear description of the vulnerability.
- The affected URL, endpoint, product, or feature.
- Steps to reproduce the issue.
- Any relevant screenshots, logs, or proof-of-concept details.
- Your contact information for follow-up questions.
Responsible Testing Guidelines
- Do not access, modify, delete, or exfiltrate data that is not yours.
- Do not degrade, interrupt, or deny service to other users.
- Do not use social engineering, phishing, or physical attacks.
- Do not upload malware or perform destructive testing.
- Do not publicly disclose the issue until we have had a reasonable opportunity to investigate and address it.
Safe Harbor
If you make a good-faith effort to follow this policy, avoid harm to users and systems, and promptly report potential issues, we will not pursue legal action against you for the security research described in your report. This safe harbor does not apply to activity that is unlawful, harmful, destructive, privacy-invasive, or outside the scope of this policy.
Out of Scope
- Spam, social engineering, or phishing reports.
- Reports requiring physical access to a device or office.
- Denial-of-service or load testing.
- Issues in third-party services not controlled by Entrepreneuria.
- Missing security headers without demonstrated impact.
- Automated scanner output without a verified exploit or risk.
Response Expectations
We aim to review legitimate security reports as soon as reasonably possible. Response and remediation timelines may vary based on severity, complexity, affected systems, and available resources.
No Bounty Program
Unless otherwise stated in writing, Entrepreneuria does not currently operate a paid bug bounty program. Reports are welcomed and appreciated, but submission does not guarantee compensation, public recognition, or reward.
Contact
Entrepreneuria Global, Inc.
Website: https://entrepreneuria.io
Email: security@entrepreneuria.io