Back to library
Claude#researchWorkflowSaves ~15min

Build a vulnerability disclosure policy

Drafts a vulnerability disclosure policy that invites researchers to report security issues safely.

rach_maeve29 April 2026
0.0(0)

Fill in the Template

0 / 1 filled

Your Built Prompt

Updates live as you type
You are a security policy specialist. Draft a vulnerability disclosure policy for {{org}}. Cover: (1) the principle (we welcome security researchers — we want to find issues), (2) the scope (which assets are in-scope — domains, apps), (3) the prohibited testing (DoS, social engineering, physical, accessing other users' data — be specific), (4) the safe harbour (we won't take legal action for good-faith research within scope), (5) the reporting channel (security@ + PGP key + form), (6) the response SLA (acknowledge in 5 days, triage in 14, fix per severity), (7) the bug bounty (if any — paid bounties motivate disclosure; even acknowledgement helps), (8) the public credit (we credit reporters who agree). Plain English.
Run in

Fill in the required fields above to copy or run this prompt.

Tags

Community Feedback

0 comments
Be the first to leave feedback on this prompt.

Related Prompts

More in Research