§ III · Security disclosures
Security disclosure policy.
If you have identified a vulnerability in this site, in materials published by Human Intelligence, or in services we operate, we ask that you disclose it to us before any public disclosure so that we have the opportunity to investigate and remediate.
Send security reports to security@humanintel.net. We acknowledge receipt within two business days. We do not currently operate a paid bug-bounty program; we do, however, maintain a public acknowledgements page once a remediation is shipped.
We ask that researchers refrain from accessing data that does not belong to them, from degrading service availability, and from publicly disclosing details before remediation has shipped.