Vulnerability Disclosure Policy

Effective Date: May 13, 2025


1. Purpose

At World of Hackers LLC, we take security seriously. We recognize the important role that ethical security researchers and the cybersecurity community play in helping us protect our users, partners, and infrastructure. This policy outlines how to report security vulnerabilities in a safe and responsible manner.


2. Scope

This policy applies to:


3. Out of Scope

Please do not test or report:

  • Denial-of-Service (DoS or DDoS) vulnerabilities
  • Social engineering attacks (e.g., phishing employees)
  • Physical security issues
  • Vulnerabilities in third-party software (unless used within our platform)


4. Guidelines for Responsible Disclosure

If you discover a potential vulnerability:

  • Do not exploit the issue (e.g., accessing unauthorized data or systems)
  • Do not share the vulnerability with others before we have resolved it
  • Provide detailed info, including steps to reproduce the issue
  • Avoid violating privacy or disrupting services during testing


5. Safe Harbor

If you follow this policy:

  • We will not initiate legal action against you for your report
  • We will treat your report with respect and confidentiality
  • We may publicly credit you for the discovery (with permission)


6. How to Report a Vulnerability

Please send all vulnerability reports to:
security@worldofhackers.io (If not created yet, use support@worldofhackers.io)

Include:

  • A clear description of the vulnerability
  • Steps to reproduce the issue
  • Any screenshots, logs, or technical details
  • Your contact info for follow-up


7. Acknowledgments

We thank ethical hackers and the security community for helping us keep our systems secure.