Responsible Disclosure
Last updated · July 2026
We build security tooling, so we hold our own to a high bar. If you've found a vulnerability in Paladeon, we want to hear about it.
Reporting a vulnerability
Email a detailed report to support@paladeon.com. Include steps to reproduce, affected endpoints, and any proof of concept. Encrypt sensitive details on request.
Our commitment
We'll acknowledge your report within two business days, keep you updated on our progress, and let you know when the issue is resolved. We will not pursue legal action against good-faith research.
Scope
In scope: the Paladeon platform, API, and website. Out of scope: denial-of-service, social engineering, and findings against third-party services we integrate with.
Safe harbor
Testing that respects this policy — avoiding privacy violations, data destruction, and service disruption — is authorized, and we consider it a benefit to our users.