Paladeon
Legal

Responsible Disclosure

Last updated · July 2026

We build security tooling, so we hold our own to a high bar. If you've found a vulnerability in Paladeon, we want to hear about it.

Reporting a vulnerability

Email a detailed report to support@paladeon.com. Include steps to reproduce, affected endpoints, and any proof of concept. Encrypt sensitive details on request.

Our commitment

We'll acknowledge your report within two business days, keep you updated on our progress, and let you know when the issue is resolved. We will not pursue legal action against good-faith research.

Scope

In scope: the Paladeon platform, API, and website. Out of scope: denial-of-service, social engineering, and findings against third-party services we integrate with.

Safe harbor

Testing that respects this policy — avoiding privacy violations, data destruction, and service disruption — is authorized, and we consider it a benefit to our users.