LAWDE Shield
Responsible Disclosure
Last updated: July 2026
LAWDE Shield Responsible Disclosure Policy
LAWDE welcomes responsible security research.
If you discover a potential security vulnerability, we encourage you to report it privately so that we can investigate and resolve the issue.
Reporting a Vulnerability
Please send reports to:
[support@lawde.net](mailto:support@lawde.net)
Include as much information as possible, including:
- Description of the issue
- Steps to reproduce
- Impact assessment
- Proof of concept (if available)
- Contact information
Good Faith Research
We will not pursue legal action against researchers who:
- Act in good faith
- Avoid harming users
- Do not access data unnecessarily
- Give us reasonable time to investigate before public disclosure
Out of Scope
The following are generally outside the scope of this policy:
- Social engineering
- Physical attacks
- Denial-of-service attacks
- Spam
- Vulnerabilities in third-party services outside our control
- Reports without a demonstrable security impact
Our Commitment
When you submit a valid report, we aim to:
- Acknowledge receipt as promptly as reasonably possible
- Investigate the issue
- Keep you informed of progress where appropriate
- Resolve confirmed vulnerabilities according to severity and operational constraints
No Bug Bounty
LAWDE Shield does not currently operate a public bug bounty program.
Responsible disclosures are greatly appreciated, but financial rewards are not guaranteed.
Thank You
We appreciate the efforts of the security community in helping improve the safety and reliability of LAWDE Shield.