Vulnerability Disclosure Policy

Last updated: 23 April 2026

Revgentic takes the security of our platform seriously. If you believe you've discovered a security vulnerability in our services, we encourage you to report it to us responsibly.

How to report

Please email security@revgentic.com with:

  • A description of the vulnerability
  • Steps to reproduce
  • The potential impact
  • Any supporting materials (screenshots, proof-of-concept, etc.)

Our commitment

We will acknowledge your report within 3 business days, investigate and validate the issue, keep you informed of our progress, and remediate confirmed vulnerabilities in a timeframe appropriate to their severity. We will not pursue legal action against researchers who act in good faith and follow this policy.

Scope

In scope: the Revgentic web application, desktop application, and associated APIs.

Out of scope: social engineering, physical attacks, denial-of-service attacks, and vulnerabilities in third-party services we rely on (please report those to the relevant vendor).

Safe harbour

Good-faith security research conducted under this policy is authorised. Please do not access, modify, or delete data belonging to other users; avoid degrading our services; and give us reasonable time to remediate before public disclosure.

Contact

Revgentic LTD

Security team

Email: security@revgentic.com

security.txt: /.well-known/security.txt