generated: '2026-07-18' method: searched probe: false source: https://docs.billogram.com/ policy: - https://billogramsupport.zendesk.com/hc/en-us/articles/17897563984668 contact: [] evidence: - source: https://billogram.com/ kind: security-issue-reporting link detail: >- The billogram.com site links a "Security Issue Reporting" help-center article (Zendesk) as its channel for reporting security issues. note: >- The /vulnerability-disclosure path on billogram.com is a SPA catch-all that returns the marketing homepage shell (the earlier automated keyword match was a false positive from the og:url path echo). The genuine channel is the linked Zendesk "Security Issue Reporting" article; its body is Cloudflare- protected (403 to automated fetch) so its contents were not captured. No public bug-bounty program (HackerOne/Bugcrowd/Intigriti) was found.