Skip to main content

Responsible Disclosure

Definition

Responsible disclosure is the process where a security researcher reports a found vulnerability to the affected organization so it can be fixed before public disclosure.

The process: researcher finds vulnerability, informs the organization, gives a reasonable time to fix (usually 90 days), then the vulnerability is disclosed publicly.

Related terms

Bug Bounty CVE Pentest