# 1. Vulnerability Reporting Guidelines
If you discover a security vulnerability in Certifada, please report it immediately to security@certifada.com. We acknowledge all reports within 24 hours.
# 2. Public PGP Encryption Key
PGP Key Fingerprint: 4A9F 8B2C 1D0E 3F47 9821 5634 C0BA DEFE 1234 5678
Encrypted reports can be addressed to security@certifada.com.
# 3. Ethical Research Safe Harbor
Certifada pledges not to initiate legal action against security researchers who conduct testing in good faith, avoid privacy violations, and adhere to responsible disclosure principles.