Guidelines for reporting security vulnerabilities
Last updated: 11 June 2026
At Garbott, we take security seriously. We appreciate the security research community and recognize that responsible disclosure helps keep our systems and users safe. This policy outlines how to report security vulnerabilities to us responsibly.
We encourage security researchers to report vulnerabilities they discover in our systems, applications, or services. By following responsible disclosure practices, you help us maintain the security and integrity of our infrastructure while protecting our users and clients.
We are interested in receiving reports about the following types of vulnerabilities:
The following issues are generally not considered security vulnerabilities:
To report a security vulnerability, please send an email to our security team with the following information:
We are committed to responding to security reports in a timely manner:
To ensure a productive and secure process, please follow these guidelines:
We appreciate the security research community and may offer recognition for responsible disclosure of significant vulnerabilities. Recognition may include:
Please note that we do not currently offer monetary rewards for vulnerability reports.
By participating in our responsible disclosure program:
If you have any questions about this responsible disclosure policy or need clarification on any aspect of the reporting process, please contact our security team at [email protected].
Security Team
Garbott Ltd
13a Bankside, Kidlington, Oxford, OX5 1JE, UK
Email: [email protected]
Phone: +44 1865 689798