Responsible Disclosure Policy

KudosWall

Effective and Last Updated: Nov 23, 2025

At KudosWall, we are committed to maintaining the security and privacy of our users. We take reported vulnerabilities seriously and strive to resolve confirmed issues as quickly as possible, based on severity and impact.

If you believe you've discovered a security vulnerability in our platform, we encourage you to report it responsibly.

How to Report

Please send your report to: [email protected]

Include the following details, if possible:

  • A detailed description of the vulnerability
  • Steps to reproduce the issue
  • Any supporting materials (e.g., screenshots, video, proof-of-concept)

We request that you:

  • Do not publicly disclose the issue until we’ve had a reasonable opportunity to review it
  • Do not access or modify data that does not belong to you
  • Avoid using automated tools or brute force techniques that may affect our service

What to Expect from Us

  • Our team will review your report and assess its validity and severity.
  • We prioritize remediation based on user impact, exploitability, and overall risk.
  • Due to limited resources, we may not be able to respond individually to every report, but lack of response does not mean the issue is being ignored.
  • If we need additional details to understand or validate the issue, we may reach out for clarification.

Rewards and Recognition

KudosWall does not operate a bug bounty, reward, or public recognition program.

We are unable to offer compensation, gifts, or guaranteed acknowledgment for security reports. By submitting a report, you acknowledge that no reward, payment, or follow-up communication should be expected.

Safe Harbor

We will not take legal action against researchers who:

  • Act in good faith to report vulnerabilities
  • Follow this policy
  • Do not compromise the privacy, integrity, or availability of our services or user data

Thank you for helping keep KudosWall safe and secure.