generated: '2026-09-06' method: probed source: probe of /.well-known/security.txt on every Accord host, plus a read of https://inaccord.com/product/security name: Accord vulnerability disclosure published: false security_txt: false bug_bounty: false disclosure_page: false security_contact: null note: >- Accord publishes no vulnerability disclosure programme that could be found. /.well-known/security.txt returned 404 on inaccord.com, www.inaccord.com, developers.inaccord.com, api.inaccord.com, api2.inaccord.com and collaboration.inaccord.com; there is no security.txt Policy or Contact field to read, no /security/disclosure or responsible-disclosure page in the site's sitemap (394 URLs), and no HackerOne, Bugcrowd or Intigriti programme surfaced by search. The company's /product/security page is a marketing page claiming SOC 2 Type II and states no security contact address. Because nothing was verified, NO Security pointer is emitted in apis.yml — this file records a measured absence, not a programme. evidence: - url: https://inaccord.com/.well-known/security.txt status: 404 - url: https://api.inaccord.com/.well-known/security.txt status: 404 - url: https://developers.inaccord.com/.well-known/security.txt status: 404 - url: https://inaccord.com/product/security status: 200 note: marketing security page, no disclosure policy or security contact checked: '2026-09-06'