VZO | Bug Bounty Program
We take the security of VZO seriously. This page outlines how security vulnerabilities can be responsibly reported to our team.
Reporting a Vulnerability
If you believe you have identified a security issue within VZO, please report it by contacting: support@visualzen.com
Please include:
- A description of the issue
- Steps to reproduce
- Potential impact
- Any supporting materials (screenshots, proof of concept)
Scope
This program applies to:
- VZO platform (govzo.com and associated services)
- Public-facing applications managed by VisualZen
Out of scope:
- Third-party systems not controlled by VisualZen
- Social engineering or physical attacks
Our Commitment
We will:
- Review all submitted reports
- Investigate valid vulnerabilities
- Take appropriate remediation action
- Maintain confidentiality when requested
Responsible Disclosure
We ask that all researchers:
- Act in good faith
- Avoid disruption to services or users
- Do not access or modify data unnecessarily
- Allow reasonable time for remediation before public disclosure
Safe Harbor
VisualZen will not pursue legal action against individuals who report vulnerabilities in good faith and in accordance with this policy.
Rewards
We do not currently offer monetary rewards. However, we appreciate responsible disclosures that help improve our security.