1Reporting a vulnerability
We welcome reports from security researchers and users who find a vulnerability in cortesys.com. Please email hello@cortesys.com with:
- a description of the issue and where it occurs;
- steps to reproduce it, or a proof of concept; and
- your contact details so we can follow up.
2Scope
This policy covers the cortesys.com website operated by Cortesys Pvt Ltd. Our marketplaces and third-party services have their own owners and policies.
3Please do not
- access, change or delete data that is not yours, or degrade the service (no denial-of-service testing);
- use social engineering, phishing or physical attacks against our people or premises;
- publicly disclose an issue before we have had a reasonable opportunity to fix it; or
- violate any law while testing.
4What to expect
We will acknowledge reports, investigate, and keep you informed where we can. This policy does not promise any payment or reward. You may also report incidents to the Indian Computer Emergency Response Team (CERT-In).