generated: '2026-07-18' method: searched probe: true source: https://corelight.com/support/security policy: - https://corelight.com/support/security contact: - securityreport@corelight.com pgp: key_id: 5EE1855F1D8EA6A2 program: type: coordinated-disclosure bug_bounty: false response_sla: within 48 hours description: >- Corelight operates a coordinated (responsible) vulnerability disclosure program. Researchers report findings to securityreport@corelight.com, optionally encrypted with Corelight's PGP public key (KeyID 5EE1855F1D8EA6A2). Corelight commits to acknowledging submissions within 48 hours and asks reporters to keep findings confidential until the issue is investigated and resolved. No public bug-bounty platform (HackerOne, Bugcrowd) is used. evidence: - source: https://corelight.com/support/security kind: disclosure-page keywords: - coordinated disclosure - securityreport@corelight.com - pgp