generated: '2026-07-19' method: searched probe: true source: https://antaresrx.com/privacy-policy/ program: none formal_policy: false bug_bounty: false security_txt: false summary: >- Antares Therapeutics runs no vulnerability disclosure programme and no bug bounty. There is no /.well-known/security.txt (404), no /security, /responsible-disclosure or /vulnerability-disclosure page, and no HackerOne, Bugcrowd or Intigriti listing. The only published channel for reporting a security concern is a single line in the corporate privacy policy directing reporters to the company's general contact address and inbox. That is a real, published channel but it is not a security disclosure policy, so this repo does NOT carry a `type: Security` pointer -- emitting one would credit the company with a disclosure programme it does not operate. policy: [] contact: - info@antaresrx.com - One Winthrop Square, Suite 400, Boston, MA 02110 evidence: - source: https://antaresrx.com/privacy-policy/ kind: privacy-policy quote: >- "if you want to report any security violations to us, please contact us at the following address" note: General company inbox and postal address; no dedicated security contact. - source: well-known/antares-therapeutics-well-known.yml kind: security.txt status: 404 note: RFC 9116 security.txt is absent from the corporate domain. - source: 0-working/probe-security-programs.py kind: probe result: vdp=none note: >- Automated probe of the standard disclosure paths returned no verified hit.