generated: '2026-07-18' method: searched probe: true source: https://cruxocm.com/security/ policy: [] contact: - security@cruxocm.com - info@cruxocm.com notes: >- CruxOCM publishes a security page describing a formal incident-reporting and security program (annual third-party penetration testing, vulnerability scanning, threat monitoring, encryption in transit and at rest, SSO/2FA, quarterly access reviews). A dedicated security contact (security@cruxocm.com) is published for reporting, with info@cruxocm.com as the emergency channel. No public bug-bounty program or formal responsible-disclosure policy page was found. evidence: - source: https://cruxocm.com/security/ kind: security-page keywords: - security@cruxocm.com - penetration testing - vulnerability scanning - incident response