Report it privately. We will work it with you.
B5 Secure runs a coordinated disclosure program. Good-faith research is welcome, in-scope reporters are credited, and every report gets a real response — not a black hole.
Responsible disclosure
We build security software; we hold ourselves to the standard we ask of others. If you have found a vulnerability in B5 Secure, report it to us privately and we will work the issue with you — acknowledgement, assessment, and a coordinated fix and disclosure timeline.
How to report
Email security@b5secure.com with steps to reproduce and impact. Encrypt sensitive details on request.
Our commitment
Good-faith research is welcome. We will not pursue researchers who follow coordinated disclosure and avoid privacy violations, data destruction, or service disruption.
Scope & safe harbor
See the Vulnerability Disclosure policy in the Trust Center for scope, safe-harbor terms, and the current disclosure process.
Recognition
Researchers who report valid, in-scope issues are credited in our security acknowledgements unless they prefer to remain anonymous. We do not yet operate a paid bounty; that posture is reviewed as the program matures.