Disclosure

Disclosure allows you to be transparent about the security flaws discovered in your program. BugZero's disclosure procedure maintains a balance between transparency and control over what information is made public. Any closed report in your program can be requested by the hacker. If the administrator of your program agrees to disclosure, the report's contents will be made public.

Requesting Disclosure

After report have been closed:

  1. Go to the bottom of the report above the comment box.

  2. Select Request Disclosure in the action picker.

  3. Select whether you want to disclose the whole document or part of it,

StateDetails

Full

With full disclosure, all the contents of the report will be publicly visible including:

  • Information about vulnerability

  • Summary

  • Timeline (this includes comments and attachments)

Summary

Only the activity summary and timeline are displayed. All comments and attachments have been hidden. Limited disclosure gives you more control over sensitive or irrelevant information.

4. Finally can give confirmation for disclosure or cancel it.

Last updated