Certifada
ProductHow it worksPricingBlogHelpFAQ
Sign inGet startedarrow_forward
Productarrow_outwardHow it worksarrow_outwardPricingarrow_outwardBlogarrow_outwardHelparrow_outwardFAQarrow_outward
Sign inGet started arrow_forward
bug_report Security & Trust v1.2

Responsible Disclosure & Security.txt

How to report a vulnerability safely and responsibly.

event Last updated: 2026-09-13gavel Sharjah Media City, Sharjah, United Arab Emirates
Legal AgreementsshieldPrivacy PolicygavelTerms of ServicecookieCookie PolicydescriptionData Processing AgreementreportAcceptable Use Policy
Trust & SecuritylockSecurity OverviewverifiedTrust Centerverified_userCompliance & GovernancehubSubprocessors Listbug_reportResponsible DisclosureaccessibilityAccessibility Statement
Enterprise ProcurementspeedService Level Agreementreceipt_longRefund & Billing PolicyapiAPI Terms of Usecontact_supportContact & Support
toc On This Page:
1. Vulnerability Reporting Guidelines2. Sharing Sensitive Evidence3. Ethical Research Safe Harbor

# 1. Vulnerability Reporting Guidelines

Send a vulnerability report to support@certifada.com with “Security report” in the subject, affected URLs, impact, and safe reproduction steps. Do not include passwords, full personal records, or destructive proof of exploitation. We review and prioritize reports; a fixed acknowledgment or resolution time is not promised by this page.

# 2. Sharing Sensitive Evidence

Contact support@certifada.com first to arrange a suitable channel for sensitive evidence. Verify the agreed channel before sending confidential information.

# 3. Ethical Research Safe Harbor

We will not initiate legal action for good-faith research that follows this policy: test only accounts and data you control, avoid disruption, do not access other people’s data, and stop and report any accidental access. Do not use social engineering, denial of service, or destructive testing. This policy does not authorize testing of third-party services or bind their operators. No reward is promised unless separately agreed.

verified_user

Questions about these policies?

Contact us about privacy, security, billing, or an enterprise agreement.

mail Contact usdescription Data processing terms
Certifada

The certificate lifecycle platform. Design, issue, deliver and verify digital credentials your recipients can trust — at any scale.

gavel Privacy & data protectionverified_user Security information

Product

ProductHow it worksPricingVerify a CredentialRecipient WalletAboutComparisonsBlog

Help

Getting startedDocumentationContact us

Trust & Security

Security OverviewTrust CenterCompliance & StandardsSubprocessorsResponsible Disclosure

Legal & Privacy

Privacy PolicyTerms of ServiceCookie PolicyData Processing (DPA)Acceptable Use PolicyCookie preferences

Enterprise & SLA

Enterprise SLAAPI Terms of UseAccessibility StatementRefund & Billing PolicyContact & Legal Support
© 2026 Certifada — All rights reserved.•Sharjah Media City, Sharjah, United Arab Emirates
Powered by CuspForge Technologies L.L.C