Last updated: February 3, 2026
Nysonik is dedicated to preserving data security by preventing unauthorized disclosure of information. This policy was created to provide security researchers with instructions for conducting vulnerability discovery activities and to provide information on how to report vulnerabilities that have been discovered. This policy explains which systems and sorts of activity are covered, how to send vulnerability reports, and how long we require you to wait before publicly reporting vulnerabilities identified.
We request that you:
Security research carried out in conformity with this policy is deemed permissible. We'll work with you to swiftly understand and fix the problem, and Nysonik will not suggest or pursue legal action in connection with your study.
This policy applies to the following systems and services:
Any service that isn't explicitly specified above, such as related or third-party services, is out of scope and isn't allowed to be tested. Vulnerabilities discovered in third-party solutions Nysonik interacts with are not covered by this policy and should be reported directly to the solution vendor in accordance with their disclosure policy (if any). Before beginning your inquiry, email us at nysonik@nysonian.com if you're unsure whether a system or endpoint is in scope.
The following test types are not authorized:
To report any security flaws, send an email to nysonik@nysonian.com. The next business day, we'll acknowledge receipt of your vulnerability report and keep you updated on our progress. Reports can be anonymously submitted.
In order to process and react to a vulnerability report, we recommend including the following information:
If possible, please provide your report in English.
If you choose to give your contact information, we promise to communicate with you in a transparent and timely manner. We will acknowledge receipt of your report within three business days. We will keep you informed on vulnerability confirmation and remedy to the best of our capabilities. We welcome a discussion of concerns and are willing to engage in a discourse.
For vulnerability reports and scope questions:
Company: Nysonik
Website: https://nysonik.com