Security & Vulnerability Disclosure | Leanback
SECURITY

Vulnerability Disclosure Program

At Leanback, the security and privacy of our users are of paramount importance.

1. Reporting a Vulnerability

If you believe you have discovered a security vulnerability in the Leanback application or our infrastructure, we encourage you to let us know immediately.

2. Our Commitment
  • We will acknowledge receipt of your vulnerability report within 48 hours.
  • We will investigate the issue promptly and keep you updated on our progress.
  • We will work to resolve verified vulnerabilities in a timely manner.
3. Guidelines

We ask that you follow these guidelines when researching and reporting vulnerabilities:

  • Do not engage in activities that could harm Leanback or its users (e.g., Denial of Service, spamming, data destruction).
  • Do not access, modify, or delete user data that does not belong to you.
  • Keep the details of any discovered vulnerabilities confidential until we have had adequate time to investigate and fix the issue.
  • Do not use automated scanners or tools that generate excessive traffic.
4. Bug Bounty Program

We also participate in the OpenBugBounty program. You can submit your findings through our official program page:

https://openbugbounty.org/bugbounty/LeanbackLive/

Report an issue

Please report all potential security issues directly to us at:

security@leanback.com