Security & Vulnerability Disclosure Policy

Security

We are concerned about safeguarding the confidentiality of your information. We provide physical, electronic, and procedural safeguards to protect the information we process and maintain. For example, we limit access to this information to authorized employees and contractors who need to know that information to operate, develop or improve our App. Please be aware that, although we endeavor to provide reasonable security for information we process and maintain, no security system can prevent all potential security breaches. You should take steps to protect against unauthorized access to your password, phone, and computer by, among other things, using best practices for authentication and always signing off after using a shared device.

Responsible Disclosure Policy

SLI aims to keep its Products and Services safe for everyone and the security of our products and data is a top priority. SLI’s responsible disclosure policy supports customers, clients, prospective customers, and security researchers who wish to investigate, test, or report on potential security risks of our products and services under the following terms:

  • In ​no event are you permitted to access, download or modify data residing in any other account than your own.
  • You are prohibited from attempting to social engineer SLI staff including contacting SLI via our Support channels without identifying yourself as a security researcher.
  • You are prohibited from executing or attempting to execute a Denial of Service attack against any SLI networks or assets.
  • You are prohibited from knowingly posting, transmitting, uploading, linking to, sending or storing any malicious or illegal software or files in SLI systems or applications.

Reporting Security Vulnerabilities to Soovu Labs

If you have discovered a security vulnerability in our Productsor Services, we would appreciate your help in disclosing it to us in aresponsible manner. To submit a vulnerability, please email security@soovu.com and provide thefollowing details:

  • The dates testing occurred/vulnerability was identified;
  • The vendor/party(s) that performed the assessment;
  • Your contact information (optional);
  • Contain at least the following for each vulnerability: name and description; severity/risk; potential impact; clear screenshots, steps to reproduce, or other evidence of the vulnerability.

    If you are concerned about the sensitivity or confidentiality of your report, please let us know in your message and a member of our Security team will be in touch with secure delivery options.

    For more information about our security practices, you may contact us as at security@soovu.com.